CVE-2025-14575EPSS p0.5%

CVE-2025-14575CVE-2025-14575

Description

An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working directory.

Scoring

EPSS0.09% probability of exploitation · percentile 0.5% · 2026-10-04T12:00:21Z
Last modified2026-07-29
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.