CVE-2025-24791 - Snowflake Connector NodeJS Local Privilege Escalation
CVE ID : CVE-2025-24791 Published : Jan. 29, 2025, 5:15 p.m. | 1 hour, 44 minutes ago Description : snowflake-connector-nodejs is a NodeJS driver for Snowflake. Snowflake discovered and remediated a vulnerability in the Snowflake NodeJS Driver. File permissions checks of the temporary credential cache could be bypassed by an attacker with write access to the local cache directory. This vulnerability affects versions 1.12.0 through 2.0.1 on Linux. Snowflake fixed the issue in version 2.0.2. Severity: 4.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
![CVE-2025-24791 - Snowflake Connector NodeJS Local Privilege Escalation](https://cdn.cvefeed.io/images/cvefeed.io-new.webp)
Published : Jan. 29, 2025, 5:15 p.m. | 1 hour, 44 minutes ago
Description : snowflake-connector-nodejs is a NodeJS driver for Snowflake. Snowflake discovered and remediated a vulnerability in the Snowflake NodeJS Driver. File permissions checks of the temporary credential cache could be bypassed by an attacker with write access to the local cache directory. This vulnerability affects versions 1.12.0 through 2.0.1 on Linux. Snowflake fixed the issue in version 2.0.2.
Severity: 4.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...