๐Ÿ” CVE Alert

CVE-2026-19248

UNKNOWN 0.0

Unbounded recursion vulnerability in the QDomNode destructor of Qt XML impacts Qt

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

QDomDocument XML parsing is vulnerable to a remotely-triggerable denial-of-service crash when processing untrusted input.

CWE CWE-674
Vendor qt
Product qt
Published Sep 16, 2026
Stay Ahead of the Next One

Get instant alerts for qt qt

Be the first to know when new unknown vulnerabilities affecting qt qt are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

qt / qt
2.2.0 โ‰ค 6.8.8 6.9.0 โ‰ค 6.11.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
codereview.qt-project.org: https://codereview.qt-project.org/c/qt/qtbase/+/740427