PT-2026-89278 · Nintendo · Nintendo Switch

CVE-2026-82079

·

Published

2026-09-10

·

Updated

2026-09-11

CVSS v4.0

7.0

High

VectorAV:A/AC:L/AT:N/PR:N/UI:P/VC:L/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Nintendo has warned Switch owners about a security vulnerability involving QR codes displayed by the console.
The issue, CVE-2026-82079, affects QR codes generated by the Switch when using the Album feature to share screenshots and videos with smartphones. The same vulnerability can also be triggered through Mario Kart Live: Home Circuit, which uses QR codes
Nintendo says the flaw could potentially allow unauthorized code execution and data theft and the company has addressed the issue with firmware version 23.0.0 and recommends updating affected consoles.
Nintendo recommends avoiding these QR-code features around people they don’t trust, the interesting part is that Switch 2 is not affected by this

Fix

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-82079

Affected Products

Nintendo Switch