PT-2026-89278 · Nintendo · Nintendo Switch
CVE-2026-82079
·
Published
2026-09-10
·
Updated
2026-09-11
CVSS v4.0
7.0
High
| Vector | AV:A/AC:L/AT:N/PR:N/UI:P/VC:L/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Nintendo has warned Switch owners about a security vulnerability involving QR codes displayed by the console.
The issue, CVE-2026-82079, affects QR codes generated by the Switch when using the Album feature to share screenshots and videos with smartphones.
The same vulnerability can also be triggered through Mario Kart Live: Home Circuit, which uses QR codes
Nintendo says the flaw could potentially allow unauthorized code execution and data theft and the company has addressed the issue with firmware version 23.0.0 and recommends updating affected consoles.
Nintendo recommends avoiding these QR-code features around people they don’t trust, the interesting part is that Switch 2 is not affected by this
Fix
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Nintendo Switch