CVE-2026-13749

HIGH CVSS 3.1: 8.8 EPSS 0.54%
Updated Jun 30, 2026
Snowflake
Parameter Value
CVSS 8.8 (HIGH)
Affected Versions 2.4.0 — 3.19.0
Fixed In 3.19.0
Type CWE-94 (Code Injection)
Vendor Snowflake
Public PoC No

Improper neutralization in the Snowpark annotation processor callback template in Snowflake CLI versions prior to 3.19 allowed arbitrary code execution during application bundling or deployment. An attacker could exploit this by supplying crafted project content that is interpolated into generated Python code, causing Snowflake CLI to execute attacker-controlled code in the local context of the user running the CLI. Successful exploitation requires the victim to run the relevant bundling or deployment workflow against attacker-controlled project content, and any resulting code runs with the privileges of that local execution context.

The fix is available in Snowflake CLI version 3.19, and users must manually upgrade.

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
Low
Easy to exploit
Privileges Required
None
No privileges needed
User Interaction
Required
User action required

Impact Assessment

Confidentiality
High
Complete data leak
Integrity
High
Complete data modification
Availability
High
Complete denial of service

CVSS Vector v3.1

Weakness Type (CWE)

Vulnerable Products 1

Configuration From (including) Up to (excluding)
Snowflake Snowflake_Cli
cpe:2.3:a:snowflake:snowflake_cli:*:*:*:*:*:*:*:*
2.4.0 3.19.0