A vulnerability described as critical has been identified in Squirro Cognitive Search up to 3.14.1. This affects an unknown part of the component Password Reset. Such manipulation leads to code injection.
This vulnerability is uniquely identified as CVE-2026-50772. The attack can be launched remotely. No exploit exists.