THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-14575 — An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working di

[NVD] CVE-2025-14575 — An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working di

lownvdPublished 2026-05-19

CVE-2025-14575 CVSS: None Published: 2026-05-19T14:16:27.120

An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working directory.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-14575