ImageMagick before 7.1.2-26 contains a policy bypass vulnerability in the APNG encoder and external delegates due to missing validation checks. Attackers can write files to disallowed paths by bypassing configured policy restrictions through the APNG encoding process.
CVSS Details
- CVSS 4.0 Base Score: 4.8 (MEDIUM)
- CVSS 4.0 Vector: (CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X)
- CVSS 3.1 Base Score: 5.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon_linux_2023 | — | Upgrade ImageMagick-docUpgrade ImageMagick-debuginfoUpgrade ImageMagick-c++-develUpgrade ImageMagick-c++Upgrade ImageMagick-perlUpgrade ImageMagick-libs-debuginfoUpgrade ImageMagickUpgrade ImageMagick-debugsourceUpgrade ImageMagick-develUpgrade ImageMagick-libsUpgrade ImageMagick-c++-debuginfoUpgrade ImageMagick-perl-debuginfo | Sep 30, 2026 | Jul 11, 2026 |
| Debian | — | Upgrade imagemagick | Jul 26, 2026 | Jul 26, 2026 |
| Redhat_linux | — | No solution exists | Jul 17, 2026 | Jul 11, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub