CVE-2026-32636: ImageMagick has a heap-buffer-overflow in NewXMLTree which could result in crash
(updated )
The NewXMLTree method contains a bug that could result in a crash due to an out of write bounds of a single zero byte.
References
Code Behaviors & Features
Detect and mitigate CVE-2026-32636 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →