PatchSiren

The Qt Company CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW The Qt Company CVE published 2026-05-19

CVE-2025-14575

CVE-2025-14575 is a low-severity local trust-path issue in the OpenSSL TLS backend of Qt Network (qtbase) on Unix. According to the CVE description, a local attacker may place a crafted certificate file in an application's working directory and cause a rogue CA certificate to be loaded as a trusted system authority. NVD currently lists the record as Awaiting Analysis and maps the weakness to CWE-427 (Unco [truncated]