[Git][security-tracker-team/security-tracker][master] Add CVE-2026-66011/imagemagick
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Sun Jul 26 13:58:09 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
76c91da5 by Salvatore Bonaccorso at 2026-07-26T14:57:48+02:00
Add CVE-2026-66011/imagemagick
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -20,7 +20,9 @@ CVE-2026-66013 (OpenRemote before 1.26.2 contains an authentication bypass vulne
CVE-2026-66012 (SiYuan before v3.7.2 contains a missing authorization vulnerability in ...)
NOT-FOR-US: SiYuan
CVE-2026-66011 (ImageMagick before 7.1.2-27 contains a memory leak vulnerability in th ...)
- TODO: check
+ - imagemagick 8:7.1.2.27+dfsg1-1
+ NOTE: https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-cvhv-g4rq-3hmw
+ NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/e3e69118c29064e2716ca89aab635ea95a15dd49 (7.1.2-27)
CVE-2026-16766 (Catalyst::View::Wkhtmltopdf versions before 0.6.1 for Perl allow shell ...)
NOT-FOR-US: Catalyst::View::Wkhtmltopdf Perl module
CVE-2026-15425 (The Yoast SEO \u2013 Advanced SEO with real-time guidance and built-in ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/76c91da57aba93c9c1d89eccf6d3aab040483b98
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/76c91da57aba93c9c1d89eccf6d3aab040483b98
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260726/935c419d/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list