Security Advisory

CVE-2026-61862

2.9
LOW

Vulnerability Description

ImageMagick before 7.1.2-26 and 6.9.13-51 contains an information disclosure vulnerability: when a profile is displayed with the identify command and the profile value is not printable, a single byte at the end of the profile can be printed (read past the profile boundary). This behavior occurs when debug output is enabled.
Published Date July 15, 2026
Official Source NIST NVD Advisory