What is CVE-2026-50770?
A vulnerability in Squirro Cognitive Search versions before 3.14.2 allows a remote attacker to escalate privileges through a crafted request. This flaw could lead to unauthorized high-level command execution on the affected system. Users are urged to immediately update to version 3.14.2 or later.
Azərbaycanca: Squirro Cognitive Search proqramının 3.14.2-dən əvvəlki versiyalarında uzaqdan hücum edən şəxsə xüsusi hazırlanmış sorğu vasitəsilə imtiyazları artırmağa imkan verən boşluq aşkarlanıb. Bu zəiflik təsirlənmiş sistemdə icazəsiz yüksək səviyyəli əmrlərin icrasına səbəb ola bilər. İstifadəçilərə proqramı dərhal 3.14.2 və ya daha yeni versiyaya yeniləmələri tövsiyə olunur.
FAQ2
Which product does CVE-2026-50770 affect?
This vulnerability affects Squirro Cognitive Search versions before 3.14.2.
What must a remote attacker do to exploit CVE-2026-50770?
A remote attacker can escalate privileges through a crafted request.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.