CVE-2026-18796
Any application that uses external QSPI flash for encrypted XIP on nRF5340 and relies on that encryption for confidentiality and/or integrity of the externally stored code. No specific nRF Connect SDK version is the root cause; the weakness is in the on-the-fly decryption scheme.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 6.8
- CVSS vector
- CVSS:4.0/AV:P/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:N/SA:N
- EPSS probability
- 0.08%
- CWE
- CWE-1342
- Published
- 2026-09-07
- Last modified
- 2026-09-10
Affected products
- Nordic Semiconductor ASA nRF5340
Weakness type
Related vulnerabilities
- CVE-2023-28746 — Information exposure through microarchitectural state after transient execution from some register...
- CVE-2022-40982 — Information exposure through microarchitectural state after transient execution in certain vector...