Known Vulnerabilities for Snowflake by Grafana
Listed below are 1 of the newest known vulnerabilities associated with "Snowflake" by "Grafana".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-86600 json | In affected Snowflake drivers, WORKLOAD_IDENTITY authentication requests a cloud workload-identity token and attaches it to t... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-86597 json | Insertion of sensitive information into log files in the Snowflake Python, Go, JDBC, Node.js, PHP PDO, and ODBC drivers allow... | Not Provided | 2026-09-08 | 2026-09-10 |
| CVE-2026-85528 json | Improper input validation of the auto-configuration account identifier in Snowflake JDBC Driver versions 4.2.0 through 4.3.3 ... | Not Provided | 2026-09-04 | 2026-09-10 |
| CVE-2026-85525 json | Improper OCSP response validation in the Snowflake Python, Go, JDBC, and Node.js drivers allowed a revoked TLS certificate to... | Not Provided | 2026-09-04 | 2026-09-10 |
| CVE-2026-77080 json | n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerability in th... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-72851 json | Budibase before 3.40.0 contains an unauthenticated SQL injection vulnerability in webhook-triggered automations with EXECUTE_... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-72750 json | n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL injection vulnerability in the Snowflake node's Execute Query operatio... | Not Provided | 2026-08-11 | 2026-08-14 |
| CVE-2026-58375 json | JimuReport through 2.5.0 exposes the POST /jmreport/auto/export endpoint without authentication: the handler is annotated @Ji... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-50148 json | Metabase is an open-source business intelligence and embedded analytics tool. From 1.54.0 until 1.54.24, 1.55.24, 1.56.25, 1.... | Not Provided | 2026-07-15 | 2026-07-20 |
| CVE-2026-28381 json | The Snowflake datasource allows for GET/PUT commands, which can allow any user with access to run queries against the data so... | Not Provided | 2026-06-22 | 2026-06-24 |