CVE-2026-18796

EUVD-2026-72300
Any application that
     uses external QSPI flash for encrypted XIP on nRF5340 and relies on that
     encryption for confidentiality and/or integrity of the externally stored
     code. No specific nRF Connect SDK version is the root cause; the weakness
     is in the on-the-fly decryption scheme.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
UNKNOWN
---