VendorsSnowflakesnowflake_jdbcall versions
Vulnerabilities

Snowflake JDBC

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2023-30535
Snowflake JDBC vulnerable to command injection via SSO URL authentication
Published 2023-04-14 · Modified
8.8EPSS 0.017
CVE-2025-24789
Snowflake JDBC allows an untrusted search path on Windows
Published 2025-01-29 · Analyzed
7.8EPSS 0.003
CVE-2024-43382
Snowflake JDBC driver versions >= 3.2.6 and <= 3.19.1 have an Incorrect Security Setting that can result in data being uploaded to an encrypted stage without the additional layer of protection provided by client side encryption.
Published 2024-10-30 · Analyzed
5.9EPSS 0.002
CVE-2025-24790
Snowflake JDBC uses insecure temporary credential cache file permissions
Published 2025-01-29 · Analyzed
5.5EPSS 0.002
CVE-2026-3293
snowflakedb snowflake-jdbc JDBC URL SdkProxyRoutePlanner.java SdkProxyRoutePlanner redos
Published 2026-02-27 · Analyzed
5.5EPSS 0.002
CVE-2025-27496
Snowflake JDBC Driver client-side encryption key in DEBUG logs
Published 2025-03-13 · Analyzed
3.3EPSS 0.001