Junglewise Threat Intelligence

CVE-2026-13749: Snowflake Snowflake CLI code injection in Snowpark annotation processor

CVE-2026-13749 · Severity: high · CVSS 8.8 · Published 2026-06-29

Technologies: Snowflake CLI. Vendors: Snowflake.

Executive brief

A vulnerability in the Snowflake Command Line Interface (CLI) could allow an attacker to execute malicious code on a user's computer. This occurs when a user processes or deploys a specially crafted project file provided by an attacker. If exploited, the attacker could gain the same access and permissions as the user running the tool, potentially leading to data theft or unauthorized system access.

Technical details

An improper neutralization vulnerability (CWE-94) exists in the Snowpark annotation processor callback template of the Snowflake CLI. The flaw occurs during the interpolation of project content into generated Python code during bundling or deployment workflows. An attacker can exploit this by providing a malicious project file that, when processed by a victim using the CLI, executes arbitrary code in the local context of the user. The vulnerability affects versions 2.4.0 through 3.18.x and is resolved in version 3.19.0. Exploitation requires user interaction (running the CLI against untrusted content).

Affected products

  • Snowflake Snowflake CLI 2.4.0 to 3.18.x (fixed in 3.19.0)

Timeline

  • 2026-06-29: disclosed
  • 2026-06-29: advisory

References