Commit 24095b79b for imagemagick.org
commit 24095b79b34474e707759aa6f91c0b85e052d68c
Author: Cristy <urban-warrior@imagemagick.org>
Date: Mon Sep 28 14:13:42 2026 -0400
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-h9g3-4qvr-rx8h
diff --git a/config/policy-limited.xml b/config/policy-limited.xml
index d5968dee7..9261b7dbd 100644
--- a/config/policy-limited.xml
+++ b/config/policy-limited.xml
@@ -98,7 +98,7 @@
<!-- Indirect reads are not permitted. -->
<policy domain="path" rights="none" pattern="@*"/>
<!-- These image types are security risks on read, but write is fine -->
- <policy domain="module" rights="write" pattern="{MSL,MVG,PS,SVG,TXT,URL,XPS}"/>
+ <policy domain="module" rights="write" pattern="{MSL,MVG,PDF,PS,SVG,TXT,URL,XPS}"/>
<!-- This policy sets the number of times to replace content of certain
memory buffers and temporary files before they are freed or deleted. -->
<!-- <policy domain="system" name="shred" value="1"/> -->