CVE-2026-61869: ImageMagick before 7.1.2-26 Memory Leak in MIFF Encoder
Published Jul 15, 2026
·Updated
ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the MIFF encoder that occurs when a memory allocation fails during MIFF image processing, which can lead to denial of service.
Affected Software
2 affected components
ImageMagick ImageMagick<7.1.2-26
ImageMagick ImageMagick<6.9.13-51
Event History
Jul 15, 2026
CVE Published
via MITRE·11:25 AM
Data Sourced
via MITRE·11:25 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:18 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-61869?
CVE-2026-61869 has a severity score of low, rated at 2.9.
2
How do I fix CVE-2026-61869?
To fix CVE-2026-61869, update ImageMagick to version 7.1.2-26 or later.
3
What type of vulnerability is CVE-2026-61869?
CVE-2026-61869 is a memory leak vulnerability found in the MIFF encoder of ImageMagick.
4
What impact does CVE-2026-61869 have on systems?
CVE-2026-61869 can lead to denial of service when processing MIFF images due to memory allocation failures.
5
Which versions of ImageMagick are affected by CVE-2026-61869?
ImageMagick versions before 7.1.2-26 and 6.9.13-51 are affected by CVE-2026-61869.