Where
-Infinity
0

Snowflake libsnowflakeclientMultiple Security Vulnerabilities in Snowflake libsnowflakeclient

Risk 79
Severity
8.8
First published (updated )

Snowflake Connector for PythonImproper TLS Hostname Verification in Snowflake Connector for Python

Risk 71
Severity
9.2
First published (updated )

Snowflake Snowflake Spark ConnectorInput Validation Vulnerabilities in Snowflake Spark Connector

Risk 76
Severity
9.2
First published (updated )

Snowflake Terraform Provider for SnowflakeMultiple Security Vulnerabilities in Terraform Provider for Snowflake Could Allow Privilege Escalation and Unauthorized Snowflake Account Takeover

Risk 79
Severity
8.8
First published (updated )

Snowflake Snowpark Python SDK (snowpark-python)SQL Injection in Snowflake Snowpark Python SDK

Risk 68
Severity
9.6
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Snowflake Snowflake CLISnowflake CLI SQL Injection Through Improper Neutralization of Parameters in Secret Creation and SPCS Service Log Commands

Risk 71
Severity
8
First published (updated )

Snowflake Snowflake CLISnowflake CLI Server-Side Request Forgery via Arbitrary URL Fetch in !source/!load

Risk 80
Severity
9.6
First published (updated )

Snowflake CLISnowflake CLI Sensitive Credential Exposure Through Debug Logging

Risk 32
Severity
5.5
First published (updated )

Snowflake Snowflake CLISnowflake CLI Arbitrary Code Execution via Snowpark Annotation Processor Template Injection

Risk 77
Severity
8.8
First published (updated )

Snowflake Snowflake CLISnowflake CLI Arbitrary Local File Read and Exfiltration Through Improper File Path Restriction

Risk 35
Severity
6.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Snowflake CLISnowflake CLI SQL Injection Through Improper Neutralization of Local CLI Parameters

Risk 34
Severity
5.4
First published (updated )

Snowflake Snowflake CLISnowflake CLI SQL Injection Through Improper Neutralization of User-Controlled Input

Risk 77
Severity
8.8
First published (updated )

pypi/streamlitStreamlit Palette hashing.py weak hash

Risk 28
Severity
1.1
First published (updated )

Snowflake Cortex Code CLIImproper Command Detection Logic Allows RCE in Cortex Code Command-Line Interface

Risk 52
Severity
8.3
EPSS
0.08%
First published (updated )

pip/StreamlitStreamlit on Windows has Unauthenticated SSRF Vulnerability (NTLM Credential Exposure)

Risk 23
Severity
4.8
EPSS
0.01%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

maven/net.snowflake/snowflake-jdbcsnowflakedb snowflake-jdbc JDBC URL SdkProxyRoutePlanner.java SdkProxyRoutePlanner redos

Risk 24
Severity
4.8
EPSS
0.01%
First published (updated )

Snowflake Connector for C/C++Snowflake Connector for C/C++ inserts client-side encryption key in DEBUG logs

Risk 13
Severity
3.3
EPSS
0.01%
First published (updated )

Snowflake Connector for C/C++Snowflake Connector for C/C++ retries malformed requests

Risk 13
Severity
3.3
EPSS
0.01%
First published (updated )

npm/snowflake-sdkNodeJS Driver for Snowflake has race condition when checking access to Easy Logging configuration file

Risk 48
Severity
7
EPSS
0.01%
First published (updated )

go/github.com/snowflakedb/gosnowflakeGo Snowflake Driver has race condition when checking access to Easy Logging configuration file

Risk 48
Severity
7
EPSS
0.01%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

nuget/Snowflake.DataSnowflake Connector for .NET has race condition when checking access to Easy Logging configuration file

Risk 48
Severity
7
EPSS
0.01%
First published (updated )

Snowflake ODBC DriverIn Snowflake ODBC Driver before 3.7.0, in certain code paths, the Driver logged the whole SQL query …

Risk 13
Severity
3.3
EPSS
0.01%
First published (updated )

The RegisterYour vendor may be the weakest link: Percentage of third-party breaches doubled in a year

First published (updated )

Snowflake JDBC DriverSnowflake JDBC Driver client-side encryption key in DEBUG logs

Risk 13
Severity
3.3
EPSS
0.01%
First published (updated )

The RegisterUS Army soldier linked to Snowflake extortion rampage admits breaking the law

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

pip/snowflake-connector-pythonThe Snowflake Connector for Python uses insecure cache files permissions

Risk 24
Severity
5.5
EPSS
0.04%
First published (updated )

pip/snowflake-connector-pythonThe Snowflake Connector for Python uses insecure deserialization of the OCSP response cache

Risk 51
Severity
7.8
EPSS
0.04%
First published (updated )

pip/snowflake-connector-pythonSnowflake Connector for Python has an SQL Injection in write_pandas

Risk 48
Severity
7
EPSS
0.04%
First published (updated )

nuget/Snowflake.DataSnowflake Connector for .NET has weak temporary files permissions

Risk 24
Severity
5.5
EPSS
0.04%
First published (updated )

maven/net.snowflake:snowflake-jdbcSnowflake JDBC uses insecure temporary credential cache file permissions

Risk 24
Severity
5.5
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203