Dlemstra maintains Magick.NET, a narrowly scoped image-processing library that wraps underlying graphics codebases and sits in the dependency chain of applications handling untrusted image formats. The recurring weakness classes—buffer over-reads, heap-based buffer overflows, uncontrolled resource consumption, memory-lifecycle issues, and NULL-pointer dereferences—reflect the memory-safety and resource-handling demands characteristic of image parsing and manipulation libraries. Defenders should monitor updates to this library and assess downstream application exposure, especially where user-supplied image content is processed; current vulnerability counts and exploitation details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dlemstra over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-23952HIGH ImageMagick is free and open-source software used for editing and manipulating digital images. Versions 14.10.1 and below have a NULL pointer dereference vulnerability in the MSL ( | Jan 22, 2026 | 7.5 | 28 | NO | NO |
CVE-2026-24485HIGH ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, when a PCD file does not contain a valid Sy | Feb 24, 2026 | 7.5 | 26 | NO | NO |
CVE-2026-27798HIGH ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability occur | Feb 26, 2026 | 7.1 | 23 | NO | NO |
CVE-2026-25637MEDIUM ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-15, a memory leak in the ASHLAR image writer allows an attacke | Feb 24, 2026 | 5.3 | 21 | NO | NO |
CVE-2026-25576MEDIUM ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability exist | Feb 24, 2026 | 5.5 | 21 | NO | NO |
CVE-2026-24484MEDIUM ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, Magick fails to check for multi-layer neste | Feb 24, 2026 | 5.3 | 21 | NO | NO |
CVE-2026-27799MEDIUM ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability exist | Feb 26, 2026 | 4.4 | 18 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dlemstra.
Media articles that mention a CVE ID that affects a product developed by Dlemstra — matched by CVE ID, not by vendor name.