CVE-2013-4549: Digia Qt

Medium severity, CVSS 5.0. EPSS: 3.1% chance of exploitation in the next 30 days.

QXmlSimpleReader in Qt before 5.2 allows context-dependent attackers to cause a denial of service (memory consumption) via an XML Entity Expansion (XEE) attack.

Affected products

  • Digia Qt: up to and including 5.1.0
  • Qt Qt: version 5.0.2 only

Published 2013-12-23. Last modified 2026-06-16.