CRITICAL 9.8 CVE-2026-50772 Published 17 Aug 2026

Squirro Cognitive Search Password Reset Remote Code Execution Flaw

Worried this affects one of your servers?

Squirro Cognitive Search versions before 3.14.2 are affected by an arbitrary code execution vulnerability.

A remote attacker can exploit this issue by sending a crafted payload to the password reset function.

  • Affected versions: Squirro Cognitive Search < 3.14.2
  • Impact: remote code execution

Reference: CVE-2026-50772 on NVD

← Back to Security News