Tenable Multiple GIMP Vulnerabilities Allow Remote Code Execution
Article Content
Browse articles
Two vulnerabilities in GIMP have been identified, allowing remote attackers to execute arbitrary code. CVE-2026-2047 involves a heap-based buffer overflow in ICNS file parsing, while CVE-2026-2048 is related to improper validation in XWD file parsing, requiring user interaction for exploitation. Both vulnerabilities were published on February 20, 2026.
Ask AI about this cluster
Answers cite the sources they use
Updated 208d ago How this analysis works
Timeline
2026-02-20
CVE-2026-2047 published
2026-02-20
CVE-2026-2048 published
2026-02-21
Article published detailing vulnerabilities
More articles in this cluster (4)
Following this threat?
Track CVE-2026-2045 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…