CVE-2026-53466 | ImageMagick up to 6.9.13-50/7.1.2-25 XCF Decoder integer overflow (GHSA-pjxj-pchx-4c3m / WID-SEC-2026-2100)
A vulnerability classified as critical was found in ImageMagick up to 6.9.13-50/7.1.2-25. Affected by this issue is some unknown functionality of the component XCF Decoder. Such manipulation leads to integer overflow.
This vulnerability is uniquely identified as CVE-2026-53466. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.