CVE-2026-56374
LOW3.3CVSS v3
—CVSS v2
0.16%
EPSS (exploit probability)
CWE-125CWE
Description
ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.
CVSS v3 vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Affected routers (0)
No routers currently mapped to this CVE in our database.