CVE-2026-28686 | ImageMagick up to 6.9.13-40/7.1.2-15 PCL Encoder heap-based overflow (EUVD-2026-10375 / CNNVD-202603-1955)
A vulnerability was found in ImageMagick up to 6.9.13-40/7.1.2-15. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component PCL Encoder. The manipulation results in heap-based buffer overflow.
This vulnerability is identified as CVE-2026-28686. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.