THREAT OPS › Threat News › Wordfence Argus Discovers Critical Vulnerability in libheif, the Library That Opens iPhone Photos on Your Server
Wordfence Argus Discovers Critical Vulnerability in libheif, the Library That Opens iPhone Photos on Your Server
<p>On September 1, 2026, the <a href="https://github.com/strukturag/libheif" rel="noopener" target="_blank">libheif</a> project released version <a href="https://github.com/strukturag/libheif/releases/tag/v1.23.3" rel="noopener" target="_blank">1.23.3</a>, closing a critical heap buffer overflow that the Wordfence Threat Intelligence team, using <a href="https://www.wordfence.com/threat-intel/vuln
MITRE ATT&CK techniques
Indicators of compromise
- 01c3929fe6b851d3cf7bda3c0215f691md5
- f97767e14ecb84ebfb6efdeaad2ee129md5
- https://heif-heist.com/url
- https://hub.docker.com/_/wordpressurl
- https://www.php.net/manual/en/book.imagick.phpurl
- https://imagemagick.org/url
- https://wordpress.org/documentation/article/roles-and-capabilities/#authorurl
- https://vercel.com/changelog/nextjs-august-2026-security-releaseurl
- https://www.hacktron.ai/blog/hacking-openaiurl
- https://developer.wordpress.org/reference/functions/wp_get_mime_types/url
- www.gravatar.comdomain