CVE-2026-105399
MEDIUM
NVD
CVSS Score
5.3
Severity
MEDIUM
Published
Oct 08, 2026
Vendor
unknown
Description
ImageMagick before 6.9.13-56 and 7.x before 7.1.2-31 contains a denial of service vulnerability in the MVG decoder caused by a missing limit check. Attackers can supply a crafted MVG image that triggers a long-running decoding operation, consuming excessive CPU resources and stalling image processing.