CVE-2024-41131: Sixlabors Imagesharp

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

ImageSharp is a 2D graphics API. An Out-of-bounds Write vulnerability has been found in the ImageSharp gif decoder, allowing attackers to cause a crash using a specially crafted gif. This can potentially lead to denial of service. All users are advised to upgrade to v3.1.5 or v2.1.9.

Affected products

  • Sixlabors Imagesharp: from 2.1.0, before 2.1.9 (fixed in 2.1.9); from 3.1.0, before 3.1.5 (fixed in 3.1.5)

Published 2024-07-22. Last modified 2026-06-17.