CVE-2026-56363: ImageMagick
Low severity, CVSS 3.3. EPSS: 0.1% chance of exploitation in the next 30 days.
ImageMagick before 7.1.2-22 contains a division by zero vulnerability in binomial kernel processing that allows attackers to cause denial of service. An attacker can supply a large binomial kernel value causing integer overflow, resulting in division by zero and application crash.
Affected products
- ImageMagick ImageMagick: before 6.9.13-47 (fixed in 6.9.13-47); from 7.0.0-0, before 7.1.2-22 (fixed in 7.1.2-22)
Published 2026-06-30. Last modified 2026-07-02.