Security Advisory

CVE-2026-61859

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-15 11:25:47
Last updated 2026-07-15 17:56:16
Assigner VulnCheck
CVSS score 4.8
State PUBLISHED

Description

ImageMagick before 7.1.2-26 and 6.9.13-x before 6.9.13-51 contains a policy bypass vulnerability in the -script operation due to missing security policy checks. This allows reading files from paths that are otherwise disallowed by the configured security policy.