Zurück zur CVE-Übersicht
CVE-2026-49219
MEDIUM(5.5)CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Risk Signal Score14/100 — NIEDRIG
- CVSS 5.5 — Mittel
Erwähnungen (letzte 60 Tage)
Artikel
EPSS-Score
0.2%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
5.5
Technische Schwere
Beschreibung
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, an incorrect parsing of the filename can result in a policy bypass and read files disallowed by a security policy using a symlink. This issue has been patched in versions 6.9.13-48 and 7.1.2-24.
GitHub Advisories
GHSA-xcjm-wqff-m669MEDIUM
ImageMagick: Policy Bypass can read disallowed files via symlink
nuget/Magick.NET-Q16-AnyCPU→ 14.14.0
GitHub Advisory