VYPR

Squirro

by Squirro

CVEs (4)

  • CVE-2026-50772CriAug 17, 2026
    risk 0.64cvss 9.8epss 0.01

    An issue in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbitrary code via a crafted payload to the password reset function.

  • CVE-2026-50770CriAug 17, 2026
    risk 0.64cvss 9.8epss 0.00

    An issue in Squirro Cognitive Search before v.3.14.2 allows a remote attacker to escalate privileges via a crafted request.

  • CVE-2026-50771MedAug 17, 2026
    risk 0.40cvss 6.1epss 0.00

    Cross Site Scripting vulnerability in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbtirary code via the Email Notification, Create Evaluation Sets and HTML Editor functions.

  • CVE-2021-27945MedApr 8, 2021
    risk 0.40cvss 6.1epss 0.01

    The Squirro Insights Engine was affected by a Reflected Cross-Site Scripting (XSS) vulnerability affecting versions 2.0.0 up to and including 3.2.4. An attacker can use the vulnerability to inject malicious JavaScript code into the application, which will execute within the…