Graphicsmagick-group
51 CVEs tracked since 2017. Since Feb 2017, none of them reached CISA KEV.
Graphicsmagick-group CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2017-02 | 1 | 0 |
| 2017-03 | 2 | 0 |
| 2017-04 | null or fewer | |
| 2017-05 | null or fewer | |
| 2017-06 | null or fewer | |
| 2017-07 | 13 | 0 |
| 2017-08 | 12 | 0 |
| 2017-09 | 6 | 0 |
| 2017-10 | 5 | 0 |
| 2017-11 | null or fewer | |
| 2017-12 | 4 | 0 |
| 2018-01 | null or fewer | |
| 2018-02 | null or fewer | |
| 2018-03 | null or fewer | |
| 2018-04 | null or fewer | |
| 2018-05 | null or fewer | |
| 2018-06 | null or fewer | |
| 2018-07 | null or fewer | |
| 2018-08 | null or fewer | |
| 2018-09 | null or fewer | |
| 2018-10 | null or fewer | |
| 2018-11 | null or fewer | |
| 2018-12 | 3 | 0 |
| 2019-01 | null or fewer | |
| 2019-02 | null or fewer | |
| 2019-03 | null or fewer | |
| 2019-04 | null or fewer | |
| 2019-05 | null or fewer | |
| 2019-06 | null or fewer | |
| 2019-07 | null or fewer | |
| 2019-08 | null or fewer | |
| 2019-09 | null or fewer | |
| 2019-10 | null or fewer | |
| 2019-11 | null or fewer | |
| 2019-12 | 3 | 0 |
| 2020-01 | null or fewer | |
| 2020-02 | null or fewer | |
| 2020-03 | 2 | 0 |
Products
The products that kept showing up in Graphicsmagick-group's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Graphicsmagick-group.
- CVE-2026-77118Out-of-bounds write in GraphicsMagick PCD decoder—
- CVE-2025-32460GraphicsMagick before 8e56520 has a heap-based buffer over-read in ReadJXLImage in coders/jxl.c, related to an ImportViewPixelArea call.4.0
- CVE-2025-27796ReadWPGImage in WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation, resulting in out-of-bounds access to heap memory in ReadBlob.4.5
- CVE-2025-27795ReadJXLImage in JXL in GraphicsMagick before 1.3.46 lacks image dimension resource limits.4.3
- CVE-2020-21679Buffer Overflow vulnerability in WritePCXImage function in pcx.c in GraphicsMagick 1.4 allows remote attackers to cause a denial of service via converting of crafted image file to pcx format.5.5
- CVE-2022-1270In GraphicsMagick, a heap buffer overflow was found when parsing MIFF.7.8
- CVE-2020-12672GraphicsMagick through 1.3.35 has a heap-based buffer overflow in ReadMNGImage in coders/png.c.7.5
- CVE-2020-10938GraphicsMagick before 1.3.35 has an integer overflow and resultant heap-based buffer overflow in HuffmanDecodeImage in magick/compress.c.9.8
- CVE-2019-12921In GraphicsMagick before 1.3.32, the text filename component allows remote attackers to read arbitrary files via a crafted image because of TranslateTextEx for SVG.6.5
- CVE-2019-19950In GraphicsMagick 1.4 snapshot-20190403 Q8, there is a use-after-free in ThrowException and ThrowLoggedException of magick/error.c.9.8
- CVE-2019-19951In GraphicsMagick 1.4 snapshot-20190423 Q8, there is a heap-based buffer overflow in the function ImportRLEPixels of coders/miff.c.9.8
- CVE-2019-19953In GraphicsMagick 1.4 snapshot-20191208 Q8, there is a heap-based buffer over-read in the function EncodeImage of coders/pict.c.9.1
- CVE-2019-11506In GraphicsMagick from version 1.3.30 to 1.4 snapshot-20190403 Q8, there is a heap-based buffer overflow in the function WriteMATLABImage of coders/mat.c, which allows an attacker to cause a denial...8.8
- CVE-2019-11505In GraphicsMagick from version 1.3.8 to 1.4 snapshot-20190403 Q8, there is a heap-based buffer overflow in the function WritePDBImage of coders/pdb.c, which allows an attacker to cause a denial of ...8.8
- CVE-2019-11474coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and application crash) by crafting an XWD image file, a different vulnerability than CV...6.5
The record
- Peak rank
- #24 in Jul 2017
- Busiest month shown
- Jul 2017, 13 CVEs
- Months with a KEV entry
- 0 since Feb 2017
- Monthly snapshots
- 10 since 2017