Security Advisory

CVE-2026-61859

3.3
LOW

Vulnerability Description

ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a policy bypass vulnerability in the -script operation due to missing security policy checks. This allows reading files from paths that are otherwise disallowed by the configured security policy.
Published Date July 15, 2026
Official Source NIST NVD Advisory