Launch Week Day 1: Announcing Security Design Review
MEDIUM 6.2 NuGet

ImageMagick has a possible infinite loop in its JPEG encoder when using `jpeg:extent`

GHSA-gwr3-x37h-h84v · CVE-2026-26283

Published · Modified

Description

A continue statement in the JPEG extent binary search loop in the jpeg encoder causes an infinite loop when writing persistently fails. An attacker can trigger a 100% CPU consumption and process hang (Denial of Service) with a crafted image.

Ready to move

Start Securing

Free, no credit card | First findings in minutes