CVE-2026-23874Patch(imagemagick / imagemagick)

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch imagemagick imagemagick systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

ImageMagick is free and open-source software used for editing and manipulating digital images. Versions prior to 7.1.2-13 have a stack overflow via infinite recursion in MSL (Magick Scripting Language) `<write>` command when writing to MSL format. Version 7.1.2-13 fixes the issue.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-835

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • imagemagick

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
imagemagick

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-04: 1Patch / Workaround · 2026-02-04: 102-04
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • Ferramentas Linux@Cezar_H_Linux
    Patch

    🛡️ ATTENTION SysAdmins &amp; DevOps Teams! A critical security flaw (CVE-2026-23874) has been patched in ImageMagick on #SUSE Linux (SUSE-2026-0384-1). Read more: 👉 https://tinyurl.com/4vcb3c73 #Security https://t.co/Q3IvtSCpn8

    Post summary

    The CVE-2026-23874 vulnerability in ImageMagick has been patched on SUSE Linux, as referenced by the SUSE advisory SUSE-2026-0384-1.

    0000033
    1.3K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appimagemagickimagemagick---

Explore more