By vendor
Gimp vulnerabilities
Known CVEs affecting Gimp products, prioritized by severity, with SEC.co remediation and detection guidance.
1 published vulnerability
- CVE-2026-2050HIGH 7.8
GIMP, the widely-used open-source image editor, contains a vulnerability in how it processes HDR (High Dynamic Range) image files. When a user opens a specially crafted malicious HDR file, an attacker can exploit improper input validation to overflow a memory buffer and execute arbitrary code on the affected system. This is a local attack that requires user interaction—an attacker cannot exploit it remotely without social engineering a user to open a malicious file.