Microsoft Security Response Center guidance
CBL-Mariner Releases
Vendor-listed releases
- 5.12.11-16
- 6.6.3-3
Vulnerability intelligence
CVE-2025-30348 and is rated Medium severity with a CVSS score of 5.3. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
CBL-Mariner Releases
encodeText in QDom in Qt before 6.8.0 has a complex algorithm involving XML string copy and inline replacement of parts of a string (with relocation of later data).