A vulnerability classified as critical was found in pnggroup libpng up to 1.6.36. Impacted is an unknown function. The manipulation results in out-of-bounds write.

This vulnerability is identified as CVE-2026-33636. The attack can be executed remotely. There is not any exploit available.

Upgrading the affected component is advised.