Feed/CVE-2026-35591
CVE-2026-35591HIGHCVSS 7.8

CVE-2026-35591

Published Jul 20, 2026·Updated Aug 19, 2026

NVD Description

libvips is a fast image processing library with low memory needs. The `tiffload` operation in libvips versions before and including 8.18.1 could incorrectly determine the number of channels in a JPEG or JPEG2000-encoded tile within a TIFF image, leading to a possible buffer overflow. This has been patched in version 8.18.2.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free