<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Coder</title>
  <link>https://cvedaily.com/pages/tags/coder.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/coder.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Coder</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:37 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2026-10175 – A security flaw has been discovered in Aider-AI Aider 0.86.3. Affected by this v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-10175</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-10175</guid>
    <pubDate>Sun, 31 May 2026 09:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-10175</strong></p>
  <p>A security flaw has been discovered in Aider-AI Aider 0.86.3. Affected by this vulnerability is the function editor_coder.run of the file auth.py of the component Architect Mode. Performing a manipulation results in code injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early t…</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-10175">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-35454 – The Code Extension Marketplace is an open-source alternative to the VS Code Mark...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35454</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35454</guid>
    <pubDate>Mon, 06 Apr 2026 22:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-35454</strong></p>
  <p>The Code Extension Marketplace is an open-source alternative to the VS Code Marketplace. Prior to 2.4.2, Zip Slip vulnerability in coder/code-marketplace allowed a malicious VSIX file to write arbitrary files outside the extension directory. ExtractZip passed raw zip entry names to a callback that wrote files via filepath.Join with no boundary check; filepath.Join resolved .. components but did n…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35454">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-28693 – ImageMagick is free and open-source software used for editing and manipulating d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28693</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28693</guid>
    <pubDate>Tue, 10 Mar 2026 07:43:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-28693</strong></p>
  <p>ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an integer overflow in DIB coder can result in out of bounds read or write. This vulnerability is fixed in 7.1.2-16 and 6.9.13-41.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28693">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-28688 – ImageMagick is free and open-source software used for editing and manipulating d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-28688</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-28688</guid>
    <pubDate>Tue, 10 Mar 2026 07:43:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-28688</strong></p>
  <p>ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a heap-use-after-free vulnerability exists in the MSL encoder, where a cloned image is destroyed twice. The MSL coder does not support writing MSL so the write capability has been removed. This vulnerability is fixed in 7.1.2-16 and 6.9.13-41.</p>
  <p><strong>CVSS:</strong> 4.0 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-28688">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-22600 – OpenProject is an open-source, web-based project management software. A Local Fi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-22600</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-22600</guid>
    <pubDate>Sat, 10 Jan 2026 02:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-22600</strong></p>
  <p>OpenProject is an open-source, web-based project management software. A Local File Read (LFR) vulnerability exists in the work package PDF export functionality of OpenProject prior to version 16.6.4. By uploading a specially crafted SVG file (disguised as a PNG) as a work package attachment, an attacker can exploit the backend image processing engine (ImageMagick). When the work package is export…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-22600">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-66147 – Missing Authorization vulnerability in merkulove Coder for Elementor coder-eleme...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66147</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66147</guid>
    <pubDate>Tue, 16 Dec 2025 09:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-66147</strong></p>
  <p>Missing Authorization vulnerability in merkulove Coder for Elementor coder-elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Coder for Elementor: from n/a through <= 1.0.13.</p>
  <p><strong>CVSS:</strong> 5.4 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66147">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-66411 – Coder allows organizations to provision remote development environments via Terr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66411</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66411</guid>
    <pubDate>Wed, 03 Dec 2025 20:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-66411</strong></p>
  <p>Coder allows organizations to provision remote development environments via Terraform. Prior to 2.26.5, 2.27.7, and 2.28.4, Workspace Agent manifests containing sensitive values were logged in plaintext unsanitized. An attacker with limited local access to the Coder Workspace (VM, K8s Pod etc.) or a third-party system (SIEM, logging stack) could access those logs. This vulnerability is fixed in 2…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66411">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-58437 – Coder allows organizations to provision remote development environments via Terr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-58437</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-58437</guid>
    <pubDate>Sat, 06 Sep 2025 03:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-58437</strong></p>
  <p>Coder allows organizations to provision remote development environments via Terraform. In versions 2.22.0 through 2.24.3, 2.25.0  and 2.25.1, Coder can be compromised through insecure session handling in prebuilt workspaces. Coder automatically generates a session token for a user when a workspace is started. It is automatically exposed via coder_workspace_owner.session_token. Prebuilt workspaces…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-277</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-58437">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-13726 – The  Coder  WordPress plugin through 1.3.4 does not properly sanitise and escape...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-13726</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-13726</guid>
    <pubDate>Mon, 17 Feb 2025 06:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-13726</strong></p>
  <p>The  Coder  WordPress plugin through 1.3.4 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-13726">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-24699 – Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company WP Coder wp-coder...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-24699</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-24699</guid>
    <pubDate>Fri, 14 Feb 2025 13:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-24699</strong></p>
  <p>Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company WP Coder wp-coder allows Cross-Site Scripting (XSS).This issue affects WP Coder: from n/a through <= 3.6.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-24699">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-12402 – The Themes Coder – Create Android &amp; iOS Apps For Your Woocommerce Site plugin fo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-12402</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-12402</guid>
    <pubDate>Tue, 07 Jan 2025 04:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-12402</strong></p>
  <p>The Themes Coder – Create Android & iOS Apps For Your Woocommerce Site plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.3.4. This is due to the plugin not properly validating a user's identity prior to updating their password through the update_user_profile() function. This makes it possible for unauthenticated attackers to ch…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-288</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-12402">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-9392 – In get_binary of vendor/mediatek/proprietary/hardware/connectivity/gps/gps_hal/s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-9392</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-9392</guid>
    <pubDate>Wed, 04 Dec 2024 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-9392</strong></p>
  <p>In get_binary of vendor/mediatek/proprietary/hardware/connectivity/gps/gps_hal/src/data_coder.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-9392">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-2578 – Improper Neutralization of Input During Web Page Generation ('Cross-site Scripti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-2578</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-2578</guid>
    <pubDate>Thu, 21 Mar 2024 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-2578</strong></p>
  <p>Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPCoder WP Coder allows Stored XSS.This issue affects WP Coder: from n/a through 3.5.</p>
  <p><strong>CVSS:</strong> 5.9 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-2578">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-27918 – Coder allows oragnizations to provision remote development environments via Terr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-27918</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-27918</guid>
    <pubDate>Thu, 21 Mar 2024 02:52:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-27918</strong></p>
  <p>Coder allows oragnizations to provision remote development environments via Terraform. Prior to versions 2.6.1, 2.7.3, and 2.8.4, a vulnerability in Coder's OIDC authentication could allow an attacker to bypass the `CODER_OIDC_EMAIL_DOMAIN` verification and create an account with an email not in the allowlist. Deployments are only affected if the OIDC provider allows users to create accounts on t…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-27918">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2024-2355 – A vulnerability has been found in keerti1924 Secret-Coder-PHP-Project 1.0 and cl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-2355</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-2355</guid>
    <pubDate>Sun, 10 Mar 2024 12:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2024-2355</strong></p>
  <p>A vulnerability has been found in keerti1924 Secret-Coder-PHP-Project 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /secret_coder.sql. The manipulation leads to inclusion of sensitive information in source code. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The…</p>
  <p><strong>CVSS:</strong> 3.7 · <strong>CWE:</strong> CWE-540</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-2355">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2024-2266 – A vulnerability has been found in keerti1924 Secret-Coder-PHP-Project 1.0 and cl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-2266</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-2266</guid>
    <pubDate>Thu, 07 Mar 2024 22:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2024-2266</strong></p>
  <p>A vulnerability has been found in keerti1924 Secret-Coder-PHP-Project 1.0 and classified as problematic. This vulnerability affects unknown code of the file /login.php of the component Login Page. The manipulation of the argument emailcookie/passwordcookie leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identif…</p>
  <p><strong>CVSS:</strong> 3.5 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-2266">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-2362 – The Float menu WordPress plugin before 5.0.2, Bubble Menu WordPress plugin befor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-2362</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-2362</guid>
    <pubDate>Mon, 12 Jun 2023 18:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-2362</strong></p>
  <p>The Float menu WordPress plugin before 5.0.2, Bubble Menu WordPress plugin before 3.0.4, Button Generator WordPress plugin before 2.3.5, Calculator Builder WordPress plugin before 1.5.1, Counter Box WordPress plugin before 1.2.2, Floating Button WordPress plugin before 5.3.1, Herd Effects WordPress plugin before 5.2.2, Popup Box WordPress plugin before 2.2.2, Side Menu Lite WordPress plugin befor…</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-2362">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-0895 – The WP Coder – add custom html, css and js code plugin for WordPress is vulnerab...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-0895</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-0895</guid>
    <pubDate>Fri, 17 Feb 2023 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-0895</strong></p>
  <p>The WP Coder – add custom html, css and js code plugin for WordPress is vulnerable to time-based SQL Injection via the ‘id’ parameter in versions up to, and including, 2.5.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.  This makes it possible for authenticated attackers with administrative privileges to append additional…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-0895">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2022-4341 – A vulnerability has been found in csliuwy coder-chain_gdut and classified as pro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-4341</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-4341</guid>
    <pubDate>Wed, 07 Dec 2022 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2022-4341</strong></p>
  <p>A vulnerability has been found in csliuwy coder-chain_gdut and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /back/index.php/user/User/?1. The manipulation leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-215095.</p>
  <p><strong>CVSS:</strong> 3.5 · <strong>CWE:</strong> CWE-707</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-4341">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-2388 – The WP Coder WordPress plugin before 2.5.3 does not have CSRF check in place whe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-2388</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-2388</guid>
    <pubDate>Mon, 22 Aug 2022 15:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-2388</strong></p>
  <p>The WP Coder WordPress plugin before 2.5.3 does not have CSRF check in place when deleting code created by the plugin, which could allow attackers to make a logged in admin delete arbitrary ones via a CSRF attack</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-2388">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-42648 – Cross-site scripting (XSS) vulnerability exists in Coder Code-Server before 3.12...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-42648</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-42648</guid>
    <pubDate>Wed, 11 May 2022 18:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-42648</strong></p>
  <p>Cross-site scripting (XSS) vulnerability exists in Coder Code-Server before 3.12.0, allows attackers to execute arbitrary code via crafted URL.</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-42648">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-25053 – The WP Coder WordPress plugin before 2.5.2 within the wow-company admin menu pag...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-25053</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-25053</guid>
    <pubDate>Mon, 10 Jan 2022 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-25053</strong></p>
  <p>The WP Coder WordPress plugin before 2.5.2 within the wow-company admin menu page allows to include() arbitrary file with PHP extension (as well as with data:// or http:// protocols), thus leading to CSRF RCE.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-25053">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-39212 – ImageMagick is free software delivered as a ready-to-run binary distribution or ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-39212</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-39212</guid>
    <pubDate>Mon, 13 Sep 2021 18:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-39212</strong></p>
  <p>ImageMagick is free software delivered as a ready-to-run binary distribution or as source code that you may use, copy, modify, and distribute in both open and proprietary applications. In affected versions and in certain cases, Postscript files could be read and written when specifically excluded by a `module` policy in `policy.xml`. ex. <policy domain="module" rights="none" pattern="PS" />. The…</p>
  <p><strong>CVSS:</strong> 4.4 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-39212">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-27753 – There are several memory leaks in the MIFF coder in /coders/miff.c due to improp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-27753</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-27753</guid>
    <pubDate>Tue, 08 Dec 2020 22:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-27753</strong></p>
  <p>There are several memory leaks in the MIFF coder in /coders/miff.c due to improper image depth values, which can be triggered by a specially crafted input file. These leaks could potentially lead to an impact to application availability or cause a denial of service. It was originally reported that the issues were in `AcquireMagickMemory()` because that is where LeakSanitizer detected the leaks, b…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-27753">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-25674 – WriteOnePNGImage() from coders/png.c (the PNG coder) has a for loop with an impr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25674</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25674</guid>
    <pubDate>Tue, 08 Dec 2020 22:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-25674</strong></p>
  <p>WriteOnePNGImage() from coders/png.c (the PNG coder) has a for loop with an improper exit condition that can allow an out-of-bounds READ via heap-buffer-overflow. This occurs because it is possible for the colormap to have less than 256 valid values but the loop condition will loop 256 times, attempting to pass invalid colormap data to the event logger. The patch replaces the hardcoded 256 value…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25674">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-25665 – The PALM image coder at coders/palm.c makes an improper call to AcquireQuantumMe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25665</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25665</guid>
    <pubDate>Tue, 08 Dec 2020 21:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-25665</strong></p>
  <p>The PALM image coder at coders/palm.c makes an improper call to AcquireQuantumMemory() in routine WritePALMImage() because it needs to be offset by 256. This can cause a out-of-bounds read later on in the routine. The patch adds 256 to bytes_per_row in the call to AcquireQuantumMemory(). This could cause impact to reliability. This flaw affects ImageMagick versions prior to 7.0.8-68.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25665">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-25664 – In WriteOnePNGImage() of the PNG coder at coders/png.c, an improper call to Acqu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25664</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25664</guid>
    <pubDate>Tue, 08 Dec 2020 21:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-25664</strong></p>
  <p>In WriteOnePNGImage() of the PNG coder at coders/png.c, an improper call to AcquireVirtualMemory() and memset() allows for an out-of-bounds write later when PopShortPixel() from MagickCore/quantum-private.h is called. The patch fixes the calls by adding 256 to rowbytes. An attacker who is able to supply a specially crafted image could affect availability with a low impact to data integrity. This…</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25664">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-19891 – An invalid memory address dereference was discovered in the huffcode function (l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19891</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19891</guid>
    <pubDate>Thu, 06 Dec 2018 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-19891</strong></p>
  <p>An invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC) 1.29.9.2. The vulnerability causes a segmentation fault and application crash, which leads to denial of service in the book 10 case.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19891">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-19890 – An invalid memory address dereference was discovered in the huffcode function (l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19890</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19890</guid>
    <pubDate>Thu, 06 Dec 2018 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-19890</strong></p>
  <p>An invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC) 1.29.9.2. The vulnerability causes a segmentation fault and application crash, which leads to denial of service in the book 2 case.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19890">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-19889 – An invalid memory address dereference was discovered in the huffcode function (l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19889</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19889</guid>
    <pubDate>Thu, 06 Dec 2018 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-19889</strong></p>
  <p>An invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC) 1.29.9.2. The vulnerability causes a segmentation fault and application crash, which leads to denial of service in the book 6 case.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19889">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-19888 – An invalid memory address dereference was discovered in the huffcode function (l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19888</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19888</guid>
    <pubDate>Thu, 06 Dec 2018 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-19888</strong></p>
  <p>An invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC) 1.29.9.2. The vulnerability causes a segmentation fault and application crash, which leads to denial of service in the HCB_ESC case.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19888">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-19887 – An invalid memory address dereference was discovered in the huffcode function (l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19887</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19887</guid>
    <pubDate>Thu, 06 Dec 2018 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-19887</strong></p>
  <p>An invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC) 1.29.9.2. The vulnerability causes a segmentation fault and application crash, which leads to denial of service in the book 4 case.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19887">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2018-19886 – An invalid memory address dereference was discovered in the huffcode function (l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-19886</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-19886</guid>
    <pubDate>Thu, 06 Dec 2018 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2018-19886</strong></p>
  <p>An invalid memory address dereference was discovered in the huffcode function (libfaac/huff2.c) in Freeware Advanced Audio Coder (FAAC) 1.29.9.2. The vulnerability causes a segmentation fault and application crash, which leads to denial of service in the book 8 case.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-19886">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-17783 – In GraphicsMagick 1.3.27a, there is a buffer over-read in ReadPALMImage in coder...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-17783</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-17783</guid>
    <pubDate>Wed, 20 Dec 2017 09:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-17783</strong></p>
  <p>In GraphicsMagick 1.3.27a, there is a buffer over-read in ReadPALMImage in coders/palm.c when QuantumDepth is 8.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-17783">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-14042 – A memory allocation failure was discovered in the ReadPNMImage function in coder...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-14042</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-14042</guid>
    <pubDate>Wed, 30 Aug 2017 22:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-14042</strong></p>
  <p>A memory allocation failure was discovered in the ReadPNMImage function in coders/pnm.c in GraphicsMagick 1.3.26. The vulnerability causes a big memory allocation, which may lead to remote denial of service in the MagickRealloc function in magick/memory.c.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-14042">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-13777 – GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coder...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-13777</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-13777</guid>
    <pubDate>Wed, 30 Aug 2017 09:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-13777</strong></p>
  <p>GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-834</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-13777">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-13776 – GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coder...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-13776</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-13776</guid>
    <pubDate>Wed, 30 Aug 2017 09:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-13776</strong></p>
  <p>GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version!=10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-834</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-13776">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-13144 – In ImageMagick before 6.9.7-10, there is a crash (rather than a "width or height...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-13144</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-13144</guid>
    <pubDate>Wed, 23 Aug 2017 06:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-13144</strong></p>
  <p>In ImageMagick before 6.9.7-10, there is a crash (rather than a "width or height exceeds limit" error report) if the image dimensions are too large, as demonstrated by use of the mpc coder.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-13144">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12666 – ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteINLINEImage in coder...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12666</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12666</guid>
    <pubDate>Mon, 07 Aug 2017 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12666</strong></p>
  <p>ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteINLINEImage in coders/inline.c.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-772</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12666">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-9130 – The faacEncOpen function in libfaac/frame.c in Freeware Advanced Audio Coder (FA...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-9130</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-9130</guid>
    <pubDate>Wed, 21 Jun 2017 07:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-9130</strong></p>
  <p>The faacEncOpen function in libfaac/frame.c in Freeware Advanced Audio Coder (FAAC) 1.28 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted wav file.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-9130">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-9129 – The wav_open_read function in frontend/input.c in Freeware Advanced Audio Coder ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-9129</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-9129</guid>
    <pubDate>Wed, 21 Jun 2017 07:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-9129</strong></p>
  <p>The wav_open_read function in frontend/input.c in Freeware Advanced Audio Coder (FAAC) 1.28 allows remote attackers to cause a denial of service (large loop) via a crafted wav file.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-9129">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2014-9807 – The pdb coder in ImageMagick allows remote attackers to cause a denial of servic...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-9807</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-9807</guid>
    <pubDate>Thu, 30 Mar 2017 15:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2014-9807</strong></p>
  <p>The pdb coder in ImageMagick allows remote attackers to cause a denial of service (double free) via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-415</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-9807">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-9849 – The png coder in ImageMagick allows remote attackers to cause a denial of servic...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-9849</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-9849</guid>
    <pubDate>Mon, 20 Mar 2017 16:59:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-9849</strong></p>
  <p>The png coder in ImageMagick allows remote attackers to cause a denial of service (crash).</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-9849">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2016-7101 – The SGI coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-7101</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-7101</guid>
    <pubDate>Wed, 18 Jan 2017 17:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2016-7101</strong></p>
  <p>The SGI coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large row value in an sgi file.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-7101">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-6823 – Integer overflow in the BMP coder in ImageMagick before 7.0.2-10 allows remote a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-6823</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-6823</guid>
    <pubDate>Wed, 18 Jan 2017 17:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-6823</strong></p>
  <p>Integer overflow in the BMP coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service (crash) via crafted height and width values, which triggers an out-of-bounds write.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-6823">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2016-5687 – The VerticalFilter function in the DDS coder in ImageMagick before 6.9.4-3 and 7...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-5687</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-5687</guid>
    <pubDate>Tue, 13 Dec 2016 15:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2016-5687</strong></p>
  <p>The VerticalFilter function in the DDS coder in ImageMagick before 6.9.4-3 and 7.x before 7.0.1-4 allows remote attackers to have unspecified impact via a crafted DDS file, which triggers an out-of-bounds read.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-5687">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2016-3717 – The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-3717</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-3717</guid>
    <pubDate>Thu, 05 May 2016 18:59:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2016-3717</strong></p>
  <p>The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files via a crafted image.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-3717">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2016-3716 – The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remot...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-3716</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-3716</guid>
    <pubDate>Thu, 05 May 2016 18:59:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2016-3716</strong></p>
  <p>The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to move arbitrary files via a crafted image.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-264</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-3716">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2016-3715 – The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-3715</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-3715</guid>
    <pubDate>Thu, 05 May 2016 18:59:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2016-3715</strong></p>
  <p>The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted image.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-552</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-3715">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-4469 – SQL injection vulnerability in view_cresume.php in Vastal I-Tech Freelance Zone ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-4469</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-4469</guid>
    <pubDate>Tue, 07 Oct 2008 00:31:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-4469</strong></p>
  <p>SQL injection vulnerability in view_cresume.php in Vastal I-Tech Freelance Zone allows remote attackers to execute arbitrary SQL commands via the coder_id parameter.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-4469">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2008-1096 – The load_tile function in the XCF coder in coders/xcf.c in (1) ImageMagick 6.2.8...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-1096</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-1096</guid>
    <pubDate>Wed, 05 Mar 2008 20:44:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2008-1096</strong></p>
  <p>The load_tile function in the XCF coder in coders/xcf.c in (1) ImageMagick 6.2.8-0 and (2) GraphicsMagick (aka gm) 1.1.7 allows user-assisted remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted .xcf file that triggers an out-of-bounds heap write, possibly related to the ScaleCharToQuantum function.</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-1096">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2008-1097 – Heap-based buffer overflow in the ReadPCXImage function in the PCX coder in code...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-1097</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-1097</guid>
    <pubDate>Wed, 05 Mar 2008 20:44:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2008-1097</strong></p>
  <p>Heap-based buffer overflow in the ReadPCXImage function in the PCX coder in coders/pcx.c in (1) ImageMagick 6.2.4-5 and 6.2.8-0 and (2) GraphicsMagick (aka gm) 1.1.7 allows user-assisted remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted .pcx file that triggers incorrect memory allocation for the scanline array, leading to memory corruption.</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-399</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-1097">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2003-1376 – WinZip 8.0 uses weak random number generation for password protected ZIP files, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2003-1376</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2003-1376</guid>
    <pubDate>Wed, 31 Dec 2003 05:00:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2003-1376</strong></p>
  <p>WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys and extract the data from the zip file by guessing the state of the stream coder.</p>
  <p><strong>CVSS:</strong> 4.6 · <strong>CWE:</strong> CWE-255</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2003-1376">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
