A local, anonymous attacker can exploit a vulnerability in GIMP to execute arbitrary code, requiring local system access as the attack vector is not remote. The vulnerability has a high CVSS base score of 7.8. The article does not specify affected or fixed version numbers, and no mitigation or workaround is provided.
[WID-SEC-2026-2716] GIMP: Schwachstelle ermöglicht Codeausführung CVSS Base Score 7.8 (hoch) CVSS Temporal Score 7.1 (hoch) Remoteangriff nein Datum 09.08.2026 Stand 10.08.2026 Mitigation nein Betroffene Systeme Betriebssystem Linux UNIX Windows Produktbeschreibung Das "Gnu Image Manipulation Program" ist eine Open Source Software zum Bearbeiten von Bildern. Es ist auch Bestandteil vieler Linux Distributionen. Produkte 09.08.2026 Open Source GIMP Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in GIMP ausnutzen, um beliebigen Programmcode auszuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben