Vulnerabilities > Snowflake > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-24 CVE-2024-49750 Information Exposure Through Log Files vulnerability in Snowflake Connector
The Snowflake Connector for Python provides an interface for developing Python applications that can connect to Snowflake and perform all standard operations.
local
low complexity
snowflake CWE-532
5.5
2024-08-12 CVE-2024-42474 Path Traversal vulnerability in Snowflake Streamlit
Streamlit is a data oriented application development framework for python.
network
low complexity
snowflake CWE-22
6.5
2023-03-16 CVE-2023-27494 Cross-site Scripting vulnerability in Snowflake Streamlit
Streamlit, software for turning data scripts into web applications, had a cross-site scripting (XSS) vulnerability in versions 0.63.0 through 0.80.0.
network
low complexity
snowflake CWE-79
6.1
2022-08-01 CVE-2022-35918 Path Traversal vulnerability in Snowflake Streamlit
Streamlit is a data oriented application development framework for python.
network
low complexity
snowflake CWE-22
6.5
2010-03-02 CVE-2010-0797 Cross-Site Scripting vulnerability in Snowflake T3Blog 0.5.0/0.6.0/0.6.1
Cross-site scripting (XSS) vulnerability in the T3BLOG extension 0.6.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
4.3