Snowflake-Connector-Python
Snowflakedb · 5 CVEs
CVE-2025-24795
MEDIUM
The Snowflake Connector for Python uses insecure cache files permissions
Jan 29, 2025
CVE-2025-24794
HIGH
The Snowflake Connector for Python uses insecure deserialization of the OCSP response cache
Jan 29, 2025
CVE-2025-24793
HIGH
Snowflake Connector for Python has an SQL Injection in write_pandas
Jan 29, 2025
CVE-2024-49750
MEDIUM
Snowflake Connector for Python has sensitive data in logs
Oct 24, 2024
CVE-2023-34233
HIGH
Snowflake Python Connector vulnerable to Command Injection
Jun 8, 2023
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2025-24795 | The Snowflake Connector for Python uses insecure cache files permissions | MEDIUM | 0.14% | Jan 29, 2025 |
| CVE-2025-24794 | The Snowflake Connector for Python uses insecure deserialization of the OCSP response cache | HIGH | 0.25% | Jan 29, 2025 |
| CVE-2025-24793 | Snowflake Connector for Python has an SQL Injection in write_pandas | HIGH | 0.33% | Jan 29, 2025 |
| CVE-2024-49750 | Snowflake Connector for Python has sensitive data in logs | MEDIUM | 0.20% | Oct 24, 2024 |
| CVE-2023-34233 | Snowflake Python Connector vulnerable to Command Injection | HIGH | 1.84% | Jun 8, 2023 |
Showing 1 to 5 of 5 CVEs