CVE-2019-15139: ImageMagick

Medium severity, CVSS 6.5. EPSS: 3.5% chance of exploitation in the next 30 days.

The XWD image (X Window System window dumping file) parsing component in ImageMagick 7.0.8-41 Q16 allows attackers to cause a denial-of-service (application crash resulting from an out-of-bounds Read) in ReadXWDImage in coders/xwd.c by crafting a corrupted XWD image file, a different vulnerability than CVE-2019-11472.

Affected products

Published 2019-08-18. Last modified 2026-06-17.