Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-56379

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 53.4%
CVSS Severity
Products affected by CVE-2026-56379


Contact Us

Shodan ® - All rights reserved