Multiple Security Vulnerabilities in Snowflake libsnowflakeclient
CVSS v3
8.8
HIGH
EPSS Score
0.4%
exploit probability
CISA KEV
No
known exploited
Exploitation
—
SSVC status
Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2.9.2 could allow remote code execution and credential exfiltration. A stack-based buffer overflow in the file download path could allow remote code execution on a victim host. An attacker could exploit this by uploading a file with a crafted encryption metadata field to a shared internal stage that a victim process later downloads, and impact would be limited to deployments where principals with different privil
Multiple security vulnerabilities in Snowflake libsnowflakeclient versions prior to 2.9.2 could allow remote code execution and credential exfiltration. A stack-based buffer overflow in the file download path could allow remote code execution on a victim host. An attacker could exploit this by uploading a file with a crafted encryption metadata field to a shared internal stage that a victim process later downloads, and impact would be limited to deployments where principals with different privil
Active exploitation of CVE-2026-16870 has not been confirmed. The EPSS score is 0.4%, indicating the estimated probability of exploitation in the next 30 days.
CVE-2026-16870 has a CVSS v3 base score of 8.8 (HIGH severity), with vector string 3.1.
Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.