Known Vulnerabilities for Snowflake by Grafana
Listed below are 1 of the newest known vulnerabilities associated with "Snowflake" by "Grafana".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-77080 json | n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerability in th... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-72851 json | Budibase before 3.40.0 contains an unauthenticated SQL injection vulnerability in webhook-triggered automations with EXECUTE_... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-72750 json | n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL injection vulnerability in the Snowflake node's Execute Query operatio... | Not Provided | 2026-08-11 | 2026-08-14 |
| CVE-2026-58375 json | JimuReport through 2.5.0 exposes the POST /jmreport/auto/export endpoint without authentication: the handler is annotated @Ji... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-50148 json | Metabase is an open-source business intelligence and embedded analytics tool. From 1.54.0 until 1.54.24, 1.55.24, 1.56.25, 1.... | Not Provided | 2026-07-15 | 2026-07-20 |
| CVE-2026-46427 json | Budibase is an open-source low-code platform. Prior to 3.38.3, removeSecrets at packages/server/src/sdk/workspace/datasources... | Not Provided | 2026-05-27 | 2026-05-28 |
| CVE-2026-28381 json | The Snowflake datasource allows for GET/PUT commands, which can allow any user with access to run queries against the data so... | Not Provided | 2026-06-22 | 2026-06-24 |
| CVE-2026-19594 json | Insufficient input sanitization in Snowflake Python API (`snowflake.core`) versions prior to 1.13.0 allowed confused-deputy p... | Not Provided | 2026-08-12 | 2026-08-12 |
| CVE-2026-16870 json | Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2.9.2 could allow remote code execution a... | Not Provided | 2026-07-24 | 2026-07-24 |
| CVE-2026-15925 json | Improper TLS hostname verification in Snowflake Connector for Python versions prior to 4.7.1 and 3.18.1 may have allowed a ne... | Not Provided | 2026-07-16 | 2026-07-16 |