LOW 3.3 NuGet
ImageMagick has out-of-bounds access in ConnectedComponentsImage() via CLI-controlled connected-components:* artifacts
GHSA-pmpg-6pww-fg6q · CVE-2026-56370
Published · Modified
AI SAST
Find this class of vulnerability in your own code
Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.
Description
When the connected-components:* define specifies an invalid index and out of bound operation will result in an access violation.
References
- WEB https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-pmpg-6pww-fg6q
- ADVISORY https://nvd.nist.gov/vuln/detail/CVE-2026-56370
- PACKAGE https://github.com/ImageMagick/ImageMagick
- WEB https://www.vulncheck.com/advisories/imagemagick-out-of-bounds-access-in-connectedcomponentsimage-via-connected-components-artifact
Ready to move
Start Securing
Free, no credit card | First findings in minutes