LOW 3.3 NuGet
ImageMagick: Policy Bypass in script operation due to missing checks
GHSA-vghg-5jrg-2398 · CVE-2026-61859
Published · Modified
AI SAST
Find this class of vulnerability in your own code
Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.
Description
The -script operation is missing policy checks and that could result in both reading from paths disallowed by the security policy.
Ready to move
Start Securing
Free, no credit card | First findings in minutes