Use-after-free vulnerability in Qt SVG qsvghandler.cpp allows denial of service via crafted SVG
Vulnerability Description
The module will parse a <pattern> node which is not a child of a structural node. The node will be deleted after creation but might be accessed later leading to a use after free.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-10729
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- OSS-Fuzz
More from The Qt Company
View All →Affected Vendor
The Qt Company
View all reports →