|
551
|
8.8 |
HIGH
Network
|
nsa
|
ghidra
|
Ghidra before 12.1 contains an authentication bypass vulnerability in PKIAuthenticationModule.authenticate() that allows any user with a valid CA-signed certificate to impersonate other users by pres…
Update
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2026-52754
|
2026-06-12 04:52 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
552
|
5.5 |
MEDIUM
Local
|
nsa
|
ghidra
|
Ghidra before 12.0.3 contains an out-of-memory vulnerability in the rust_demangle function that allocates unbounded output buffers without size limits. Attackers can craft malicious Rust symbol names…
Update
|
CWE-789
Memory Allocation with Excessive Size Value
|
CVE-2026-52753
|
2026-06-12 04:52 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
553
|
5.7 |
MEDIUM
Adjacent
|
microsoft
|
windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2022 windows_server_2025
|
Incorrect calculation of buffer size in Windows TCP/IP allows an authorized attacker to deny service over an adjacent network.
Update
|
CWE-131
Incorrect Calculation of Buffer Size
|
CVE-2026-42915
|
2026-06-12 04:52 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
554
|
7.8 |
HIGH
Local
|
nsa
|
ghidra
|
Ghidra before 12.0.2 contains a path traversal vulnerability in the extension installer that fails to validate ZIP entry names during extraction. Attackers can craft malicious extensions with travers…
Update
|
CWE-22
Path Traversal
|
CVE-2026-52752
|
2026-06-12 04:52 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
555
|
8.8 |
HIGH
Network
|
nsa
|
ghidra
|
Ghidra before 12.1 contains an unsafe deserialization vulnerability in client-side Shared-Project RMI connection code that allows unauthenticated remote code execution. Attackers can craft a maliciou…
Update
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2026-52751
|
2026-06-12 04:51 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
556
|
5.3 |
MEDIUM
Network
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Windows Kerberos Denial of Service Vulnerability
Update
|
CWE-125
Out-of-bounds Read
|
CVE-2026-42914
|
2026-06-12 04:51 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
557
|
7.8 |
HIGH
Local
|
nsa
|
ghidra
|
Ghidra before 12.1 contains a command injection vulnerability in URL annotation handling on Windows where cmd.exe metacharacters are not properly escaped. Attackers can execute arbitrary commands und…
Update
|
CWE-88
Argument Injection
|
CVE-2026-52750
|
2026-06-12 04:51 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
558
|
8.8 |
HIGH
Network
|
nsa
|
ghidra
|
Ghidra 11.0 before 12.1 contains a SQL injection vulnerability in the changePassword() method of PostgresFunctionDatabase that fails to escape double quotes in usernames interpolated into ALTER ROLE …
Update
|
CWE-89
SQL Injection
|
CVE-2026-49498
|
2026-06-12 04:50 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
559
|
3.3 |
LOW
Local
|
nsa
|
ghidra
|
Ghidra before 12.1 contains a path traversal vulnerability in SameDirDebugInfoProvider that fails to validate filenames from ELF binary .gnu_debuglink sections before constructing file paths. Attacke…
Update
|
CWE-22
Path Traversal
|
CVE-2026-49497
|
2026-06-12 04:50 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
560
|
6.1 |
MEDIUM
Local
|
nsa
|
ghidra
|
Ghidra before 12.1 contains a heap-use-after-free vulnerability in SleighBuilder::generatePointerAdd caused by iterator invalidation when PcodeCacher::allocateInstruction reallocates the issued vecto…
Update
|
CWE-416
Use After Free
|
CVE-2026-49496
|
2026-06-12 04:50 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
561
|
5.5 |
MEDIUM
Local
|
nsa
|
ghidra
|
Ghidra 10.2 before 12.1 contains an uncontrolled resource consumption vulnerability in ExportTrie.parseTrie() that lacks cycle detection when traversing Mach-O binary export tries. A crafted Mach-O b…
Update
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2026-49495
|
2026-06-12 04:49 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
562
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
Update
|
CWE-362
Race Condition
|
CVE-2026-42912
|
2026-06-12 04:47 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
563
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Update
|
CWE-416
Use After Free
|
CVE-2026-42911
|
2026-06-12 04:47 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
564
|
7.8 |
HIGH
Local
|
microsoft
|
windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2025
|
Out-of-bounds write in Windows Hotpatch Monitoring Service allows an authorized attacker to elevate privileges locally.
Update
|
CWE-787
Out-of-bounds Write
|
CVE-2026-42910
|
2026-06-12 04:46 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
565
|
5.5 |
MEDIUM
Local
|
x.org redhat
|
x_server xwayland enterprise_linux
|
A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-after-free read after changing window attributes and forcing the screen saver, le…
Update
|
CWE-416
Use After Free
|
CVE-2026-50263
|
2026-06-12 04:46 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
566
|
7.1 |
HIGH
Local
|
samsung
|
assistant
|
Improper export of android application components in ExpressHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attacker to execute arbitrary script.
Update
|
NVD-CWE-noinfo
|
CVE-2026-21033
|
2026-06-12 04:43 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
567
|
7.1 |
HIGH
Local
|
samsung
|
assistant
|
Improper export of android application components in SmartHomeWidgetReceiver of Samsung Assistant prior to version 9.3.14 allows local attacker to execute arbitrary script.
Update
|
NVD-CWE-noinfo
|
CVE-2026-21032
|
2026-06-12 04:42 |
2026-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
568
|
6.5 |
MEDIUM
Network
|
erlang
|
erlang\/inets erlang\/otp ftp
|
Server-Side Request Forgery (SSRF) vulnerability in Erlang/OTP ftp (ftp_internal module) allows FTP bounce attacks and SSRF via an unvalidated PASV response IP address.
The ftp_internal:handle_ctrl_…
New
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-48858
|
2026-06-12 04:27 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
569
|
6.5 |
MEDIUM
Network
|
microsoft
|
windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2019 windows_server_2022 windows_server_2025
|
Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information locally.
Update
|
CWE-200
Information Exposure
|
CVE-2026-42907
|
2026-06-12 04:23 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
570
|
8.6 |
HIGH
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by a Dependency on Vulnerable Third-Party Component vulnerability that could result in arbitrary code execution in the context of the curren…
Update
|
NVD-CWE-noinfo
|
CVE-2026-47906
|
2026-06-12 04:22 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
571
|
6.3 |
MEDIUM
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Access Control vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to a…
Update
|
CWE-284 NVD-CWE-noinfo
Improper Access Control
|
CVE-2026-47907
|
2026-06-12 04:21 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
572
|
7.8 |
HIGH
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploi…
Update
|
CWE-824
Access of Uninitialized Pointer
|
CVE-2026-47908
|
2026-06-12 04:20 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
573
|
6.3 |
MEDIUM
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Input Validation vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to…
Update
|
CWE-20 NVD-CWE-noinfo
Improper Input Validation
|
CVE-2026-47909
|
2026-06-12 04:18 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
574
|
6.3 |
MEDIUM
Local
|
adobe
|
dreamweaver
|
Dreamweaver Desktop versions 21.7 and earlier are affected by an Incorrect Authorization vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to a…
Update
|
CWE-863
Incorrect Authorization
|
CVE-2026-47910
|
2026-06-12 04:16 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
575
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_reader
|
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. E…
Update
|
CWE-787
Out-of-bounds Write
|
CVE-2026-47911
|
2026-06-12 04:15 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
576
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_reader
|
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…
Update
|
CWE-416
Use After Free
|
CVE-2026-47912
|
2026-06-12 04:15 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
577
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_reader
|
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…
Update
|
CWE-416
Use After Free
|
CVE-2026-47913
|
2026-06-12 04:08 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
578
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_reader
|
Acrobat Reader versions 24.001.30365, 26.001.21651 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploit…
Update
|
CWE-416
Use After Free
|
CVE-2026-47914
|
2026-06-12 04:08 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
579
|
6.1 |
MEDIUM
Network
|
microsoft
|
sharepoint_server
|
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
Update
|
CWE-79
Cross-site Scripting
|
CVE-2026-33113
|
2026-06-12 04:03 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
580
|
5.4 |
MEDIUM
Network
|
adobe
|
experience_manager
|
Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the D…
Update
|
CWE-79
Cross-site Scripting
|
CVE-2026-34692
|
2026-06-12 04:03 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
581
|
8.1 |
HIGH
Network
|
microsoft
|
visual_studio_code
|
Improper input validation in Visual Studio Code allows an unauthorized attacker to elevate privileges over a network.
Update
|
CWE-20 NVD-CWE-noinfo
Improper Input Validation
|
CVE-2026-40376
|
2026-06-12 03:56 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
582
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2019 windows_server_2022 windows_server_2025
|
Use after free in Windows Network Controller (NC) Host Agent allows an authorized attacker to deny service locally.
Update
|
CWE-416 CWE-822
Use After Free Untrusted Pointer Dereference
|
CVE-2026-44805
|
2026-06-12 03:55 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
583
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2022 windows_server_2025
|
Stack-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.
Update
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2026-45648
|
2026-06-12 03:54 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
584
|
7.5 |
HIGH
Network
|
svelte
|
svelte
|
Svelte is a performance oriented web framework. From version 5.51.5 to before version 5.55.7, an internal regex in the Svelte runtime can take exponential time to test in <svelte:element this={tag}><…
Update
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2026-42567
|
2026-06-12 03:54 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
585
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Update
|
CWE-122 CWE-416
Heap-based Buffer Overflow Use After Free
|
CVE-2026-45653
|
2026-06-12 03:54 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
586
|
7.5 |
HIGH
Network
|
svelte
|
devalue
|
Svelte devalue is a JavaScript library that serializes values into strings when JSON.stringify isn't sufficient for the job. From version 5.6.3 to before version 5.8.1, devalue.parse could, due to qu…
Update
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-42570
|
2026-06-12 03:52 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
587
|
7.9 |
HIGH
Local
|
microsoft
|
windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2025
|
Protection mechanism failure in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
Update
|
CWE-284
Improper Access Control
|
CVE-2026-45654
|
2026-06-12 03:51 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
588
|
5.3 |
MEDIUM
Physics
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
Update
|
CWE-693
Protection Mechanism Failure
|
CVE-2026-45655
|
2026-06-12 03:48 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
589
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Update
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2026-45601
|
2026-06-12 03:47 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
590
|
6.1 |
MEDIUM
Network
|
svelte
|
svelte
|
Svelte is a performance oriented web framework. Prior to version 5.55.7, Svelte was vulnerable to DOM clobbering of its internal framework state on elements, potentially leading to XSS attacks. This …
Update
|
CWE-79
Cross-site Scripting
|
CVE-2026-42573
|
2026-06-12 03:46 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
591
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 w…
|
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Update
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2026-45603
|
2026-06-12 03:46 |
2026-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
592
|
4.7 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-49 and 7.1.2-24, an infinite loop in the subimage-search operation can happen w…
New
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2026-48733
|
2026-06-12 03:44 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
593
|
5.5 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-49 and 7.1.2-24, a crafted MVG file could result in a stack overflow due to a m…
New
|
CWE-674
Uncontrolled Recursion
|
CVE-2026-48734
|
2026-06-12 03:44 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
594
|
5.9 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing check of a return value could lead to a heap buffer …
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2026-48994
|
2026-06-12 03:44 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
595
|
7.5 |
HIGH
Network
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing check in the DCM decoder could result in an image wi…
New
|
CWE-20
Improper Input Validation
|
CVE-2026-49218
|
2026-06-12 03:44 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
596
|
5.5 |
MEDIUM
Local
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, an incorrect parsing of the filename can result in a policy by…
New
|
CWE-22 CWE-78 CWE-200 CWE-863
Path Traversal OS Command Information Exposure Incorrect Authorization
|
CVE-2026-49219
|
2026-06-12 03:44 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
597
|
7.5 |
HIGH
Network
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, a missing check for maximum memory request in AcquireAlignedMe…
New
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2026-53460
|
2026-06-12 03:44 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
598
|
7.5 |
HIGH
Network
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, an incorrect loop in the ICON decoder can result in an out of …
New
|
CWE-787
Out-of-bounds Write
|
CVE-2026-53461
|
2026-06-12 03:44 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
599
|
5.9 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can resu…
New
|
CWE-416
Use After Free
|
CVE-2026-53462
|
2026-06-12 03:43 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
600
|
4.3 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when passing incorrect arguments in the distort operation a nu…
New
|
CWE-476
NULL Pointer Dereference
|
CVE-2026-53463
|
2026-06-12 03:43 |
2026-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|