CISA Known Exploited Vulnerability

CVE-2016-3718

ImageMagick · ImageMagick

ImageMagick Server-Side Request Forgery (SSRF) Vulnerability

Date added
BOD 22-01 due date
CWE CWE-20
Ransomware Unknown

CISA description

ImageMagick contains an unspecified vulnerability that allows attackers to perform server-side request forgery (SSRF) via a crafted image.

Required action

Apply updates per vendor instructions.