<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 07:27:05 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-09990</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-09990</link>
      <description>bdu:2026-09990</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-09990</guid>
    </item>
    <item>
      <title>EUVD-2026-337182</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-337182</link>
      <description>EUVD-2026-337182</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-337182</guid>
    </item>
    <item>
      <title>fkie_cve-2026-56379</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-56379</link>
      <description>&lt;p&gt;ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-56379</guid>
    </item>
    <item>
      <title>GHSA-xpg8-7m6m-jf56 — ImageMagick: SVG-to-MVG Command Injection via coders/svg.c</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xpg8-7m6m-jf56</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: Magick.NET-Q16-AnyCPU, NuGet: Magick.NET-Q16-HDRI-AnyCPU, NuGet: Magick.NET-Q16-HDRI-OpenMP-arm64, NuGet: Magick.NET-Q16-HDRI-OpenMP-x64, NuGet: Magick.NET-Q16-HDRI-arm64, NuGet: Magick.NET-Q16-HDRI-x64, NuGet: Magick.NET-Q16-HDRI-x86, NuGet: Magick.NET-Q16-OpenMP-arm64, NuGet: Magick.NET-Q16-OpenMP-x64, NuGet: Magick.NET-Q16-OpenMP-x86 and 9 more&lt;/p&gt;
&lt;p&gt;An attacker can inject arbitrary MVG (Magick Vector Graphics) drawing commands in an SVG file that is read by the internal SVG decoder of ImageMagick. The injected MVG commands execute during rendering.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: Magick.NET-Q16-AnyCPU, NuGet: Magick.NET-Q16-HDRI-AnyCPU, NuGet: Magick.NET-Q16-HDRI-OpenMP-arm64, NuGet: Magick.NET-Q16-HDRI-OpenMP-x64, NuGet: Magick.NET-Q16-HDRI-arm64, NuGet: Magick.NET-Q16-HDRI-x64, NuGet: Magick.NET-Q16-HDRI-x86, NuGet: Magick.NET-Q16-OpenMP-arm64, NuGet: Magick.NET-Q16-OpenMP-x64, NuGet: Magick.NET-Q16-OpenMP-x86 and 9 more&lt;/p&gt;
&lt;p&gt;An attacker can inject arbitrary MVG (Magick Vector Graphics) drawing commands in an SVG file that is read by the internal SVG decoder of ImageMagick. The injected MVG commands execute during rendering.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xpg8-7m6m-jf56</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11127-1 — ImageMagick-7.1.2.25-3.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11127-1</link>
      <description>&lt;p&gt;ImageMagick-7.1.2.25-3.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ImageMagick-7.1.2.25-3.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11127-1</guid>
    </item>
    <item>
      <title>RHSA-2026:32961 — Red Hat Security Advisory: ImageMagick security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:32961</link>
      <description>&lt;p&gt;ImageMagick: ImageMagick: Denial of Service due to resource policy bypass in PSD decoder ImageMagick: ImageMagick: Denial of Service due to excessive resource use in MNG coder ImageMagick: ImageMagick: Denial of Service via out-of-bounds write when processing multiple images ImageMagick: ImageMagick: Denial of Service via crafted MIFF file ImageMagick: ImageMagick: Denial of Service via crafted MSL image leading to heap-use-after-free ImageMagick: ImageMagick: Heap buffer over-write via `magick -distribute-cache` service connection ImageMagick: ImageMagick: Denial of Service via crafted DCM image with invalid dimensions ImageMagick: ImageMagick: Denial of Service via missing memory request check ImageMagick: ImageMagick: Arbitrary code execution via SVG decoder command injection&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ImageMagick: ImageMagick: Denial of Service due to resource policy bypass in PSD decoder ImageMagick: ImageMagick: Denial of Service due to excessive resource use in MNG coder ImageMagick: ImageMagick: Denial of Service via out-of-bounds write when processing multiple images ImageMagick: ImageMagick: Denial of Service via crafted MIFF file ImageMagick: ImageMagick: Denial of Service via crafted MSL image leading to heap-use-after-free ImageMagick: ImageMagick: Heap buffer over-write via `magick -distribute-cache` service connection ImageMagick: ImageMagick: Denial of Service via crafted DCM image with invalid dimensions ImageMagick: ImageMagick: Denial of Service via missing memory request check ImageMagick: ImageMagick: Arbitrary code execution via SVG decoder command injection&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:32961</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:22620-1 — Security update for ImageMagick</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:22620-1</link>
      <description>&lt;p&gt;Security update for ImageMagick&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for ImageMagick&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:22620-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-56379</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-56379</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: imagemagick, Ubuntu:Pro:16.04:LTS: imagemagick, Ubuntu:Pro:18.04:LTS: imagemagick, Ubuntu:Pro:20.04:LTS: imagemagick, Ubuntu:Pro:22.04:LTS: imagemagick, Ubuntu:Pro:24.04:LTS: imagemagick, Ubuntu:25.10: imagemagick&lt;/p&gt;
&lt;p&gt;ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: imagemagick, Ubuntu:Pro:16.04:LTS: imagemagick, Ubuntu:Pro:18.04:LTS: imagemagick, Ubuntu:Pro:20.04:LTS: imagemagick, Ubuntu:Pro:22.04:LTS: imagemagick, Ubuntu:Pro:24.04:LTS: imagemagick, Ubuntu:25.10: imagemagick&lt;/p&gt;
&lt;p&gt;ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-56379</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0484 — ImageMagick: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0484</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in ImageMagick ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand herbeizuführen oder andere nicht näher definierte Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in ImageMagick ausnutzen, um beliebigen Programmcode auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand herbeizuführen oder andere nicht näher definierte Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0484</guid>
    </item>
  </channel>
</rss>
