CVE-2025-31946: Pixmeo Osirix Md

Medium severity, CVSS 6.2. EPSS: 0.3% chance of exploitation in the next 30 days.

Pixmeo OsiriX MD is vulnerable to a local use after free scenario, which could allow an attacker to locally import a crafted DICOM file and cause memory corruption or a system crash.

Affected products

  • Pixmeo Osirix Md: up to and including 14.0.1 (Build 2024-02-28)

Published 2025-05-08. Last modified 2026-06-17.