{"api_version":"v1","generated_at":"2026-10-08T10:35:00+00:00","product":{"cve_count":42,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-gimp-gimp-36c9c27853fd","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/gimp","name":"GIMP","next_cursor":null,"observations":[{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18309","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18309","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-08-27T16:24:52.517Z","patch_url":"","primary_source":"","published":"2026-08-20T16:24:13.911Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18308","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18308","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:52.671Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18308","primary_source":"","published":"2026-08-20T16:24:00.590Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18307","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18307","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:52.841Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18307","primary_source":"","published":"2026-08-20T16:23:52.557Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18306","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18306","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:52.991Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18306","primary_source":"","published":"2026-08-20T16:23:42.663Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18305","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18305","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:53.144Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18305","primary_source":"","published":"2026-08-20T16:23:35.093Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18304","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18304","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:53.292Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18304","primary_source":"","published":"2026-08-20T16:23:27.514Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18303","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18303","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:53.446Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18303","primary_source":"","published":"2026-08-20T16:23:19.019Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18302","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18302","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:53.594Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18302","primary_source":"","published":"2026-08-20T16:23:11.929Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18301","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18301","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:53.747Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18301","primary_source":"","published":"2026-08-20T16:23:03.121Z"},{"affected":"3.2.2","affected_versions_present":true,"cve_id":"CVE-2026-18300","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-18300","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-08-27T16:24:53.896Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-18300","primary_source":"","published":"2026-08-20T16:22:54.633Z"},{"affected":"GIMP: 3.0.6","affected_versions_present":true,"cve_id":"CVE-2026-2050","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-2050","fixed":"RHSA-2026:38485: Red Hat Enterprise Linux AppStream (v. 8)","last_modified":"2026-09-09T12:04:54.040Z","patch_url":"https://www.zerodayinitiative.com/advisories/ZDI-26-282/","primary_source":"","published":"2026-06-24T21:43:46.856Z"},{"affected":"3.2.0-RC1","affected_versions_present":true,"cve_id":"CVE-2026-2049","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-2049","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:20:34.637Z","patch_url":"","primary_source":"","published":"2026-06-10T21:22:47.059Z"},{"affected":"3.0.8","affected_versions_present":true,"cve_id":"CVE-2026-4154","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-4154","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T00:59:14.317Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/2e7ed91793792d9e980b2df4c829e9aa60459253","primary_source":"","published":"2026-04-11T00:16:10.657Z"},{"affected":"3.0.8","affected_versions_present":true,"cve_id":"CVE-2026-4153","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-4153","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T00:59:16.354Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/98cb1371fd4e22cca75017ea3252dc32fc218712","primary_source":"","published":"2026-04-11T00:16:01.848Z"},{"affected":"3.0.8","affected_versions_present":true,"cve_id":"CVE-2026-4152","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-4152","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-07-15T00:59:21.284Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-4152","primary_source":"","published":"2026-04-11T00:15:54.200Z"},{"affected":"3.0.8","affected_versions_present":true,"cve_id":"CVE-2026-4151","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-4151","fixed":"For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258","last_modified":"2026-07-15T00:59:23.636Z","patch_url":"https://access.redhat.com/security/cve/CVE-2026-4151","primary_source":"","published":"2026-04-11T00:15:45.368Z"},{"affected":"3.0.8","affected_versions_present":true,"cve_id":"CVE-2026-4150","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-4150","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T00:59:26.183Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/00afdabdadeb5457fd897878b1e5aebc3780af10","primary_source":"","published":"2026-04-11T00:15:36.377Z"},{"affected":"3.2.0-RC1","affected_versions_present":true,"cve_id":"CVE-2026-2048","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-2048","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-07-15T01:20:36.582Z","patch_url":"","primary_source":"","published":"2026-02-20T22:23:51.039Z"},{"affected":"3.0.6","affected_versions_present":true,"cve_id":"CVE-2026-2047","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-2047","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T01:20:38.931Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2600/diffs?commit_id=dd2faac351f1ff2588529fedc606e6a5f815577c","primary_source":"","published":"2026-02-20T22:23:41.576Z"},{"affected":"3.0.6","affected_versions_present":true,"cve_id":"CVE-2026-2045","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-2045","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T01:20:41.398Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/68b27dfb1cbd9b3f22d7fa624dbab8647ee5f275","primary_source":"","published":"2026-02-20T22:23:32.645Z"},{"affected":"3.0.6","affected_versions_present":true,"cve_id":"CVE-2026-2044","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-2044","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T01:20:43.685Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2569/diffs?commit_id=112a5e038f0646eae5ae314988ec074433d2b365","primary_source":"","published":"2026-02-20T22:23:23.266Z"},{"affected":"3.2.0-RC1","affected_versions_present":true,"cve_id":"CVE-2026-0797","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-0797","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T01:24:07.612Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/69cc6b1a6645dc9c4d7b484483dbe6a84b922b9c","primary_source":"","published":"2026-02-20T22:10:04.716Z"},{"affected":"3.0.6","affected_versions_present":true,"cve_id":"CVE-2025-15059","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-15059","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-07-15T01:27:02.877Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/03575ac8cbb0ef3103b0a15d6598475088dcc15e","primary_source":"","published":"2026-01-23T02:49:52.381Z"},{"affected":"3.0.6","affected_versions_present":true,"cve_id":"CVE-2025-14425","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-14425","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-01-02T14:04:01.866Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/cd1c88a0364ad1444c06536731972a99bd8643fd","primary_source":"","published":"2025-12-23T21:31:42.424Z"},{"affected":"3.0.6","affected_versions_present":true,"cve_id":"CVE-2025-14424","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-14424","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:07:24.147Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/5cc55d078b7fba995cef77d195fac325ee288ddd","primary_source":"","published":"2025-12-23T21:31:33.530Z"},{"affected":"3.0.6","affected_versions_present":true,"cve_id":"CVE-2025-14423","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-14423","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:07:24.349Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/481cdbbb97746be1145ec3a633c567a68633c521","primary_source":"","published":"2025-12-23T21:31:23.374Z"},{"affected":"3.0.6","affected_versions_present":true,"cve_id":"CVE-2025-14422","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-14422","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:07:24.538Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/4ff2d773d58064e6130495de498e440f4a6d5edb","primary_source":"","published":"2025-12-23T21:31:13.262Z"},{"affected":"3.0.4","affected_versions_present":true,"cve_id":"CVE-2025-10934","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-10934","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:56:55.211Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/5c3e2122d53869599d77ef0f1bdece117b24fd7c","primary_source":"","published":"2025-10-29T19:58:55.670Z"},{"affected":"3.0.4","affected_versions_present":true,"cve_id":"CVE-2025-10925","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-10925","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:56:57.648Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2450","primary_source":"","published":"2025-10-29T19:29:54.680Z"},{"affected":"3.0.4","affected_versions_present":true,"cve_id":"CVE-2025-10924","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-10924","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:56:58.146Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2448","primary_source":"","published":"2025-10-29T19:29:50.398Z"},{"affected":"3.0.4","affected_versions_present":true,"cve_id":"CVE-2025-10923","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-10923","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:56:58.644Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/2d2d39f3da1d0b01ca7d71ad2b7a8725ee92ed96","primary_source":"","published":"2025-10-29T19:29:46.493Z"},{"affected":"3.0.4","affected_versions_present":true,"cve_id":"CVE-2025-10922","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-10922","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:56:59.083Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/commit/3d909166463731e94dfe62042d76225ecfc4c1e4","primary_source":"","published":"2025-10-29T19:29:42.905Z"},{"affected":"3.0.4","affected_versions_present":true,"cve_id":"CVE-2025-10921","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-10921","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:56:59.669Z","patch_url":"https://gitlab.gnome.org/GNOME/gegl/-/commit/0e68b7471dabf2800d780819c19bd5e6462f565f","primary_source":"","published":"2025-10-29T19:29:39.135Z"},{"affected":"3.0.4","affected_versions_present":true,"cve_id":"CVE-2025-10920","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-10920","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-02-26T16:57:00.556Z","patch_url":"https://gitlab.gnome.org/GNOME/gimp/-/merge_requests/2443","primary_source":"","published":"2025-10-29T19:29:35.471Z"},{"affected":"< 3.1.4.2","affected_versions_present":true,"cve_id":"CVE-2025-8672","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-8672","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-08-11T19:45:08.822Z","patch_url":"","primary_source":"","published":"2025-08-11T12:21:48.487Z"},{"affected":"3.0.2","affected_versions_present":true,"cve_id":"CVE-2025-5473","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-5473","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-03T17:45:11.067Z","patch_url":"","primary_source":"","published":"2025-06-06T18:44:38.495Z"},{"affected":"2.10.38","affected_versions_present":true,"cve_id":"CVE-2025-2761","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-2761","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-03T17:32:24.718Z","patch_url":"","primary_source":"","published":"2025-04-23T16:47:31.812Z"},{"affected":"2.10.38","affected_versions_present":true,"cve_id":"CVE-2025-2760","cve_url":"https://cve.blacktree.nl/cve/CVE-2025-2760","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-03T17:32:23.789Z","patch_url":"","primary_source":"","published":"2025-04-23T16:47:21.455Z"},{"affected":"GIMP 2.10.34 (revision 2)","affected_versions_present":true,"cve_id":"CVE-2023-44444","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-44444","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-04T19:25:22.771Z","patch_url":"","primary_source":"","published":"2024-05-03T02:14:07.371Z"},{"affected":"GIMP 2.10.34 (revision 2)","affected_versions_present":true,"cve_id":"CVE-2023-44443","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-44443","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-09-18T18:30:31.951Z","patch_url":"","primary_source":"","published":"2024-05-03T02:14:06.664Z"},{"affected":"GIMP 2.10.34 (revision 2)","affected_versions_present":true,"cve_id":"CVE-2023-44442","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-44442","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-04T19:25:21.663Z","patch_url":"","primary_source":"","published":"2024-05-03T02:14:05.940Z"},{"affected":"GIMP 2.10.34 (revision 2)","affected_versions_present":true,"cve_id":"CVE-2023-44441","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-44441","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2025-11-04T19:25:20.377Z","patch_url":"","primary_source":"","published":"2024-05-03T02:14:05.136Z"}],"source_generated_at":"2026-10-08T06:18:52.353Z","vendor":"GIMP"}}
