A vulnerability was found in libvips up to 8.18.1 and classified as problematic. This impacts an unknown function of the component EXIF decoder. The manipulation results in null pointer dereference.

This vulnerability is cataloged as CVE-2026-35590. The attack may be launched remotely. There is no exploit available.