๐Ÿ” CVE Alert

CVE-2026-78253

UNKNOWN 0.0

Denial-of-service (stack-exhaustion) vulnerability in QXmlStreamReader::readElementText() impacts Qt

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Uncontrolled recursion in QXmlStreamReader::readElementText() in Qt Group Qt allows attackers to cause a denial of service (application crash via stack exhaustion) via a crafted XML document.

CWE CWE-674
Vendor qt
Product qt
Published Sep 23, 2026
Stay Ahead of the Next One

Get instant alerts for qt qt

Be the first to know when new unknown vulnerabilities affecting qt qt are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

qt / qt
5.0.0 โ‰ค 6.8.8 6.9.0 โ‰ค 6.11.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
codereview.qt-project.org: https://codereview.qt-project.org/c/qt/qtbase/+/754345