Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 06 Oct 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat hummingbird |
|
| CPEs | cpe:/a:redhat:hummingbird:1 | |
| Vendors & Products |
Redhat
Redhat hummingbird |
|
| References |
| |
| Metrics |
threat_severity
|
cvssV3_1
|
Mon, 05 Oct 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 05 Oct 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Qt for MCUs, a Text element that displays styled text halts the device if an <img> tag in the text contains an attribute with an empty value. The text parser passes the empty value to an internal check that only accepts non-empty values. The check fails and reports an error, and the default error handler halts the device. | |
| Title | An empty <img> attribute value in styled text triggers a parser error that halts the device. | |
| First Time appeared |
Qt
Qt qt For Mcus |
|
| Weaknesses | CWE-230 CWE-617 |
|
| CPEs | cpe:2.3:a:qt:qt_for_mcus:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Qt
Qt qt For Mcus |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Qt
Published:
Updated: 2026-10-05T12:04:27.598Z
Reserved: 2026-08-10T07:19:46.149Z
Link: CVE-2026-19395
Updated: 2026-10-05T12:04:10.460Z
Status : Awaiting Analysis
Published: 2026-10-05T10:16:41.923
Modified: 2026-10-06T16:00:36.547
Link: CVE-2026-19395
OpenCVE Enrichment
Updated: 2026-10-06T20:45:05Z