📦 Qt

by Qt

🔍 What is Qt?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-36048

CRITICAL CVSS 9.8 May 18, 2024

This vulnerability in Qt Network Authorization's QAbstractOAuth uses only system time to seed the pseudo-random number generator (PRNG), making generated values predictable. Attackers could guess auth...

CVE-2023-51714

CRITICAL CVSS 9.8 Dec 24, 2023

This vulnerability is an integer overflow in the HPack table implementation of Qt's HTTP/2 component. It allows remote attackers to cause a denial of service (crash) or potentially execute arbitrary c...

CVE-2023-37369

HIGH CVSS 7.5 Aug 20, 2023

This vulnerability in Qt's XML parsing component (QXmlStreamReader) allows a crafted XML string to trigger an application crash due to a buffer length miscalculation. It affects applications using vul...

CVE-2023-38197

HIGH CVSS 7.5 Jul 13, 2023

This vulnerability in Qt's XML parsing allows attackers to cause denial of service through infinite loops during recursive entity expansion. It affects applications using Qt's XML processing functiona...

CVE-2023-32763

HIGH CVSS 7.5 May 28, 2023

A buffer overflow vulnerability exists in Qt's SVG rendering component when processing SVG files containing images. This can allow attackers to execute arbitrary code or cause denial of service by cra...

CVE-2023-24607

HIGH CVSS 7.5 Apr 15, 2023

This vulnerability in Qt's SQL ODBC driver allows denial of service via a crafted string when SQLTCHAR size is 4. It affects applications using Qt's database connectivity with ODBC drivers. Users of Q...

CVE-2022-25634

HIGH CVSS 7.5 Mar 2, 2022

This vulnerability in Qt allows attackers to load malicious system library files from unintended directories, potentially leading to arbitrary code execution. It affects applications using Qt 5 throug...

CVE-2020-24742

HIGH CVSS 7.8 Aug 9, 2021

CVE-2020-24742 is a path traversal vulnerability in Qt's QPluginLoader that loads plugins from the current working directory instead of secure locations. This allows attackers to execute arbitrary cod...

CVE-2025-5683

MEDIUM CVSS 5.5 Jun 5, 2025

This vulnerability allows an attacker to cause a denial-of-service crash by loading a specially crafted ICNS image file in Qt's QImage component. It affects applications using Qt versions 6.3.0 throug...

CVE-2025-30348

MEDIUM CVSS 5.8 Mar 21, 2025

This vulnerability in Qt's QDom XML processing allows an attacker to cause a denial of service through algorithmic complexity attacks. Applications using Qt's XML parsing functionality before version ...