๐Ÿ” CVE Alert

CVE-2026-13751

MEDIUM 4.1

Snowflake CLI Server-Side Request Forgery via Arbitrary URL Fetch in !source/!load

CVSS Score
4.1
EPSS Score
0.0%
EPSS Percentile
0th

Improper handling of untrusted remote references in Snowflake CLI versions prior to 3.19 allowed server-side request forgery. The SQL statement reader's !source/!load directives could reference remote URLs that were retrieved at runtime without sufficient restriction on the request destination. By supplying crafted SQL content processed through a vulnerable command path, an attacker could cause the victim's environment to issue unintended outbound requests to internal or otherwise non-public network locations, and could cause remote SQL content to be retrieved and executed in the context of the victim user's session. Successful exploitation requires the victim to process attacker-controlled content through a vulnerable command path and is limited by the privileges available to that session and environment. The fix is available in Snowflake CLI version 3.19, which adds an option to disable remote URL retrieval.

CWE CWE-918 CWE-829
Vendor snowflake
Product snowflake cli
Published Jun 29, 2026
Last Updated Jun 29, 2026
Stay Ahead of the Next One

Get instant alerts for snowflake snowflake cli

Be the first to know when new medium vulnerabilities affecting snowflake snowflake cli are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N
Attack Vector
Local
Attack Complexity
High
Privileges Required
None
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None

Affected Versions

Snowflake / Snowflake CLI
3.6.0 < 3.19.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
community.snowflake.com: https://community.snowflake.com/s/article/Snowflake-CLI-Vulnerability-Advisory