CVE-2026-50771: Squirro Squirro Cognitive Search vulnerability
Published Aug 17, 2026
·Updated
Cross Site Scripting vulnerability in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbtirary code via the Email Notification, Create Evaluation Sets and HTML Editor functions.
Affected Software
1 affected component
Squirro Squirro Cognitive Search<3.14.2
Event History
Aug 17, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2026-50771?
CVE-2026-50771 has a risk rating of 65.
2
How do I fix CVE-2026-50771?
To fix CVE-2026-50771, upgrade Squirro Cognitive Search to version 3.14.2 or later.
3
What functions are affected by CVE-2026-50771?
CVE-2026-50771 affects the Email Notification, Create Evaluation Sets, and HTML Editor functions.
4
What type of vulnerability is CVE-2026-50771?
CVE-2026-50771 is a Cross Site Scripting (XSS) vulnerability.
5
Can CVE-2026-50771 allow attackers to execute code?
Yes, CVE-2026-50771 allows a remote attacker to execute arbitrary code.