Sploitus

CVE-2026-22770

No indexed exploits for CVE-2026-22770 yet

ImageMagick is free and open-source software used for editing and manipulating digital images. The BilateralBlurImage method will allocate a set of double buffers inside AcquireBilateralTLS. But, in versions prior to 7.1.2-13, the last element in the set is not properly initialized. This will result in a release of an invalid pointer inside DestroyBilateralTLS when the memory allocation fails. Version 7.1.2-13 contains a patch for the issue.

Affected products
Imagemagick, Red Os
Imagemagick
< 7.1.2-13
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
0.3% (26th percentile)
Weakness
CWE-763
NVD status
Analyzed
Published
2026-01-20
CVE-2026-22770 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-22770 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-22770 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.