VendorsSnowflakesnowflake_connectorany version
Vulnerabilities

Snowflake Connector any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

13CVEs
CVE-2023-34232
Snowflake NodeJS Driver vulnerable to Command Injection
Published 2023-06-08 · Modified
8.8EPSS 0.019
CVE-2023-34233
Snowflake Python Connector vulnerable to Command Injection
Published 2023-06-08 · Modified
8.8EPSS 0.018
CVE-2023-34230
Snowflake Connector vulnerable to Command Injection
Published 2023-06-08 · Modified
8.8EPSS 0.014
CVE-2025-24794
The Snowflake Connector for Python uses insecure deserialization of the OCSP response cache
Published 2025-01-29 · Analyzed
7.8EPSS 0.003
CVE-2022-42965
Exponential ReDoS in snowflake-connector-python leads to denial of service
Published 2022-11-09 · Analyzed
7.5EPSS 0.009
CVE-2023-51662
Snowflake Connector .NET does not properly check the Certificate Revocation List (CRL)
Published 2023-12-22 · Modified
7.5EPSS 0.003
CVE-2025-24793
Snowflake Connector for Python has an SQL Injection in write_pandas
Published 2025-01-29 · Analyzed
7.0EPSS 0.003
CVE-2025-46328
NodeJS Driver for Snowflake has race condition when checking access to Easy Logging configuration file
Published 2025-04-28 · Analyzed
7.0EPSS 0.002
CVE-2025-46326
Snowflake Connector for .NET has race condition when checking access to Easy Logging configuration file
Published 2025-04-28 · Analyzed
7.0EPSS 0.002
CVE-2024-49750
Snowflake Connector for Python has sensitive data in logs
Published 2024-10-24 · Analyzed
5.5EPSS 0.002
CVE-2025-24791
snowflake-connector-nodejs has incorrect validation of temporary credential cache file permissions
Published 2025-01-29 · Analyzed
5.5EPSS 0.001
CVE-2025-24788
Snowflake Connector for .NET has weak temporary files permissions
Published 2025-01-29 · Analyzed
5.5EPSS 0.001
CVE-2025-24795
The Snowflake Connector for Python uses insecure cache files permissions
Published 2025-01-29 · Analyzed
5.5EPSS 0.001