CVE-2026-106566 — ImageMagick is free and open-source software used for editing and manipulating digital images.
Description
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-32, delegate symlink cleanup does not check the MAGICK_SHRED_PASSES environment variable, allowing a local privileged workflow to overwrite a file with random data. This issue is fixed in version 7.1.2-32.
CVSS v3.1 base metrics
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:H/A:NMedium severity
Band computed from the CVSS base score, not the source's own label — so it means the same thing across every feed.
AV
Local
Attack Vector
AC
High
Attack Complexity
PR
High
Privileges Required
UI
Required
User Interaction
S
Unchanged
Scope
C
None
Confidentiality
I
High
Integrity
A
None
Availability
References
- advisory[email protected]https://github.com/ImageMagick/ImageMagick/commit/48e5ce1779fc640a389f0020fd7d965d0c08236e
- advisory[email protected]https://github.com/ImageMagick/ImageMagick/releases/tag/7.1.2-32
- advisory[email protected]https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-54hm-vrmh-75qj
- advisory[email protected]https://github.com/ImageMagick/ImageMagick6/commit/11d2af00a948e9ca2919d9a8684d335a48484094
- advisory[email protected]https://github.com/ImageMagick/ImageMagick6/releases/tag/6.9.13-57
Related threats
same CWE or vendorCVE-2026-107174 — A flaw was found in source-to-image.
CVE-2026-107174 · 1d ago
CVE-2026-103435 — Claude Code validated that a target file path resided within the project working directory at permission-check time, but re-resolved the path at wr…
CVE-2026-103435 · 1d ago
CVE-2026-106507 — Backstage is an open framework for building developer portals.
CVE-2026-106507 · 2d ago
CVE-2026-105712 — gpgtar in GnuPG before 2.5.19 can allow file overwrite via crafted data in an archive.
CVE-2026-105712 · 3d ago
Dulwich: Symlink write-through in checkout(paths=[]) via raw os.open bypasses all symlink protections
OSV · 6d ago
CVE-2026-97024 — A path traversal vulnerability in Flatpak's handling of the files/etc directory during app deployment allows a malicious Flatpak app to cause certa…
CVE-2026-97024 · 10d ago