Security Advisory

CVE-2025-14575

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-19 13:01:33
Last updated 2026-05-19 14:11:40
Assigner TQtC
CVSS score 1.8
State PUBLISHED

Description

An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working directory.