CRITICAL
9.8 CVE-2026-50772 Published 17 Aug 2026
Squirro Cognitive Search Password Reset Remote Code Execution Flaw
Worried this affects one of your servers?
Squirro Cognitive Search versions before 3.14.2 are affected by an arbitrary code execution vulnerability.
A remote attacker can exploit this issue by sending a crafted payload to the password reset function.
- Affected versions: Squirro Cognitive Search < 3.14.2
- Impact: remote code execution
Reference: CVE-2026-50772 on NVD
← Back to Security News