Improper Command Detection Logic Allows RCE in Cortex Code Command-Line Interface
Summary
| CVE | CVE-2026-6442 |
|---|---|
| State | PUBLISHED |
| Assigner | SNOWFLAKE |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-04-16 19:16:35 UTC |
| Updated | 2026-04-16 19:16:35 UTC |
| Description | Improper validation of bash commands in Snowflake Cortex Code CLI versions prior to 1.0.25 allowed subsequent commands to execute outside the sandbox. An attacker could exploit this by embedding specially crafted commands in untrusted content, such as a malicious repository, causing the CLI agent to execute arbitrary code on the local device without user consent. Exploitation is non-deterministic and model-dependent. The fix is automatically applied upon relaunch with no user action required. |
Risk And Classification
Primary CVSS: v3.1 8.3 HIGH from 412d305a-227d-44f9-a262-a31ba44f2aea
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
Problem Types: CWE-1286 | CWE-1286 Improper Validation of Syntactic Correctness of Input
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | 412d305a-227d-44f9-a262-a31ba44f2aea | Secondary | 8.3 | HIGH | CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H |
| 3.1 | CNA | CVSS | 8.3 | HIGH | CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H |
CVSS v3.1 Breakdown
Attack Vector
NetworkAttack Complexity
HighPrivileges Required
NoneUser Interaction
RequiredScope
ChangedConfidentiality
HighIntegrity
HighAvailability
HighCVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Snowflake | Cortex Code CLI | affected <1.0.25 custom | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.promptarmor.com | 412d305a-227d-44f9-a262-a31ba44f2aea | www.promptarmor.com | |
| community.snowflake.com/s/article/PromptArmor-Report---Snowflake-Response | 412d305a-227d-44f9-a262-a31ba44f2aea | community.snowflake.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
Discovery Credit
CNA: PromptArmor (en)
There are currently no legacy QID mappings associated with this CVE.