Known Vulnerabilities for Snowflake Cli by Snowflake
Listed below are 7 of the newest known vulnerabilities associated with "Snowflake Cli" by "Snowflake".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-85528 json | Improper input validation of the auto-configuration account identifier in Snowflake JDBC Driver versions 4.2.0 through 4.3.3 ... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-85525 json | Improper OCSP response validation in the Snowflake Python, Go, JDBC, and Node.js drivers allowed a revoked TLS certificate to... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-77080 json | n8n before 1.123.69, 2.x before 2.33.4, and 2.34.x before 2.34.1 contain an arbitrary file read and write vulnerability in th... | Not Provided | 2026-08-20 | 2026-08-21 |
| CVE-2026-72851 json | Budibase before 3.40.0 contains an unauthenticated SQL injection vulnerability in webhook-triggered automations with EXECUTE_... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-72750 json | n8n before 1.123.67, 2.31.5, and 2.32.1 contains a SQL injection vulnerability in the Snowflake node's Execute Query operatio... | Not Provided | 2026-08-11 | 2026-08-14 |
| CVE-2026-58375 json | JimuReport through 2.5.0 exposes the POST /jmreport/auto/export endpoint without authentication: the handler is annotated @Ji... | Not Provided | 2026-06-30 | 2026-07-14 |
| CVE-2026-50148 json | Metabase is an open-source business intelligence and embedded analytics tool. From 1.54.0 until 1.54.24, 1.55.24, 1.56.25, 1.... | Not Provided | 2026-07-15 | 2026-07-20 |
| CVE-2026-28381 json | The Snowflake datasource allows for GET/PUT commands, which can allow any user with access to run queries against the data so... | Not Provided | 2026-06-22 | 2026-06-24 |
| CVE-2026-19594 json | Insufficient input sanitization in Snowflake Python API (`snowflake.core`) versions prior to 1.13.0 allowed confused-deputy p... | Not Provided | 2026-08-12 | 2026-08-12 |
| CVE-2026-16870 json | Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2.9.2 could allow remote code execution a... | Not Provided | 2026-07-24 | 2026-07-24 |