Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.3 NuGet

ImageMagick: Policy Bypass in PSD decoder

GHSA-cwpj-h54c-xjpx · CVE-2026-45031

Published · Modified

Description

Due to a missing check in the PSD decoder it would be possible to bypass the list-length resource policy when decoding a PSD image. Other security limits would still apply.

Ready to move

Start Securing

Free, no credit card | First findings in minutes