THREAT OPS › Threat News › [NVD] CVE-2025-14575 — An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working di
[NVD] CVE-2025-14575 — An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working di
CVE-2025-14575 CVSS: None Published: 2026-05-19T14:16:27.120
An Uncontrolled Search Path Element vulnerability in the OpenSSL TLS backend of Qt Network (qtbase) in Qt Qt Framework (Unix) allows a local attacker to load a rogue CA certificate as a trusted system authority via a crafted certificate file placed in the application's working directory.
Indicators of compromise
- CVE-2025-14575cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-14575