CVE-2026-93589
ImageMagick before 7.1.2-31 and 6.9.13-56 contains a division-by-zero flaw in the FLIF encoder. An incorrect value for ticks per second in the image being encoded causes a divide-by-zero and crashes the encoder, resulting in a denial of service. The issue is fixed in 7.1.2-31 and 6.9.13-56.
- Published Sep 18, 2026
- CVSS 6.3 medium
- 0.3% chance of exploitation in the next 30 days (EPSS)
- A fix is available