This sounds severe: https://insert-script.blogspot.com/2020/11/imagemagick-shell-injection-via-pdf.html According to the advisory Version 7.0.10-40 and 6.9.11-40 fix the issue. We have 7.0.10.41-r1, but not stabilized yet.
This is CVE-2020-29599. Just needs GLSA.
This issue was resolved and addressed in GLSA 202101-36 at https://security.gentoo.org/glsa/202101-36 by GLSA coordinator Aaron Bauman (b-man).