Vulnerabilities (CVE)

Filtered by vendor Apache Subscribe
Filtered by product Apache-airflow-providers-snowflake
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-50213 1 Apache 1 Apache-airflow-providers-snowflake 2025-07-11 N/A 9.8 CRITICAL
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) vulnerability in Apache Airflow Providers Snowflake. This issue affects Apache Airflow Providers Snowflake: before 6.4.0. Sanitation of table and stage parameters were added in CopyFromExternalStageToSnowflakeOperator to prevent SQL injection Users are recommended to upgrade to version 6.4.0, which fixes the issue.