﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
18204	ImageMagick-7.1.1-12	ken@…	ken@…	"Several security vulnerabilities have been found in ImageMagick-7 :  four Medium severity, one High severity which appears to have been fixed in 7.1.1-10 (reported as fix going into beta on 19th May). Current version is 7.1.1-11, with my own choice of  (additional) options this seems to work as well as our current 7.1.0-61.

The first of these CVEs I looked at definitely applied to our current version, I'm fairly sure most of the others also apply.

I've just started building a fresh system to measure this and some other forthcoming attractions, hope to get this done in the coming week. 

The CVEs are CVE-2023-1289, CVE-2023-1906. CVE-2023-2157, CVE-2023-34151, CVE-2023-34153.

From [https://github.com/ImageMagick/Website/blob/main/ChangeLog.md] the only thing I noticed re changed possible dependencies was mentions of Oklab which turns out to be a perceptual colorspace [https://bottosson.github.io/posts/oklab/] and it appears that IM can now convert sRGB images to this colorspace.
 "	enhancement	closed	elevated	12.0	BOOK	git	medium	fixed		
