Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-61859

Опубликовано: 15 июл. 2026
Источник: nvd
CVSS3: 3.3
EPSS Низкий

Описание

ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a policy bypass vulnerability in the -script operation due to missing security policy checks. This allows reading files from paths that are otherwise disallowed by the configured security policy.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
Версия от 6.9.13-0 (включая) до 6.19.13-51 (исключая)
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
Версия от 7.0.0-0 (включая) до 7.1.2-26 (исключая)

EPSS

Процентиль: 3%
0.00124
Низкий

3.3 Low

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 3.3
ubuntu
19 дней назад

ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a policy bypass vulnerability in the -script operation due to missing security policy checks. This allows reading files from paths that are otherwise disallowed by the configured security policy.

CVSS3: 3.3
redhat
19 дней назад

ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a policy bypass vulnerability in the -script operation due to missing security policy checks. This allows reading files from paths that are otherwise disallowed by the configured security policy.

CVSS3: 3.3
debian
19 дней назад

ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a p ...

CVSS3: 3.3
github
19 дней назад

ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a policy bypass vulnerability in the -script operation due to missing security policy checks. This allows reading files from paths that are otherwise disallowed by the configured security policy.

EPSS

Процентиль: 3%
0.00124
Низкий

3.3 Low

CVSS3

Дефекты

CWE-59