03-20-2026, 06:03 AM
"Severe" also oversells it in my opinion. Generally we get reports from security researchers like Zero Day Initiative with a file they created specifically to crash the image loading plug-in. And that's usually all it does - GIMP itself still runs fine.
We still try to fix everything of couse, but it's not a report of an epidemic of malicious files.
Not to say that someone *couldn't* make a malicious file, but it's rather unlikely to occur in real usage.
We still try to fix everything of couse, but it's not a report of an epidemic of malicious files.

Not to say that someone *couldn't* make a malicious file, but it's rather unlikely to occur in real usage.
