snowflake-connector-python has 6 CVEs on record between 2022 and 2026. 1 was published in the last 90 days. The median CVSS is 5.9 (medium), with 1 rated critical. None have a confirmed exploitation report.
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 5.9
- Publish → KEV
- —
- Last 90 days
- 1 prev 0
Products
- snowflake-connector-python 6
Worst active — by depth score
CVE-2026-15925CriticalSnowflake Connector for Python improperly verifies TLS hostnames52CVE-2025-24793High· 7.0snowflake-connector-python vulnerable to SQL Injection in write_pandas39CVE-2025-24794Medium· 6.7snowflake-connector-python vulnerable to insecure deserialization of the OCSP response cache37CVE-2022-42965Medium· 5.9snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)33CVE-2024-49750Medium· 5.5The Snowflake Connector for Python stores sensitive data in logs30
snowflake-connector-python vulnerabilities
CVEs affecting snowflake-connector-python, newest first. Open any entry for full detail, references, and exploit status.
6 CVEsRSS
CVE-2026-15925CriticalSnowflake Connector for Python improperly verifies TLS hostnames
Snowflake Connector for Python improperly verifies TLS hostnames
CVE-2025-24795Medium· 4.4snowflake-connector-python vulnerable to insecure cache files permissions
snowflake-connector-python vulnerable to insecure cache files permissions
CVE-2025-24794Medium· 6.7snowflake-connector-python vulnerable to insecure deserialization of the OCSP response cache
snowflake-connector-python vulnerable to insecure deserialization of the OCSP response cache
CVE-2025-24793High· 7.0snowflake-connector-python vulnerable to SQL Injection in write_pandas
snowflake-connector-python vulnerable to SQL Injection in write_pandas
CVE-2024-49750Medium· 5.5The Snowflake Connector for Python stores sensitive data in logs
The Snowflake Connector for Python stores sensitive data in logs
CVE-2022-42965Medium· 5.9snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)
snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)