By weakness (CWE)
CWE-787: related vulnerabilities
CVEs classified under CWE-787. Understanding the weakness class helps prioritize systemic fixes over one-off patches.
101 published vulnerabilities · page 2 of 2
- CVE-2026-46559MEDIUM 4.0
ImageMagick, a widely used open-source image editing tool, contains a flaw in how it validates JP2 (JPEG 2000) image files. When processing certain malformed JP2 files, the software writes a single byte of data beyond the boundaries of an allocated memory region. While limited to overwriting one byte, this heap buffer overflow could cause the application to crash or, in specific configurations, enable an attacker to influence program behavior. The issue affects ImageMagick versions before 6.9.13-48 and 7.1.2-23.