CRITICAL🇵🇱 Wersja polska

CVE-2025-50213

CVSS 9.8v3.1pub. 2025-06-24upd. 2025-07-11

Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) vulnerability in Apache Airflow Providers Snowflake. This issue affects Apache Airflow Providers Snowflake: before 6.4.0. Sanitation of table and stage parameters were added in CopyFromExternalStageToSnowflakeOperator to prevent SQL injection Users are recommended to upgrade to version 6.4.0, which fixes the issue.

🤖 AI Analysis
How it works

The vulnerability results from inadequate sanitization of the 'table' and 'stage' parameters passed to the CopyFromExternalStageToSnowflakeOperator. These parameters were not filtered for special SQL syntax elements, which enabled injection of arbitrary SQL commands into queries executed in the Snowflake database. Classified as CWE-75 (Failure to Sanitize Special Elements into a Different Plane), the vulnerability allows manipulation of query logic through crafted input data.

Impact

An attacker can gain unauthorized access to data, modify or delete Snowflake database contents, and depending on account permissions — potentially take control of system resources (complete breach of confidentiality, integrity, and availability).

Mitigation & patch

The Apache Airflow Providers Snowflake package should be updated immediately to version 6.4.0 or later, which includes mechanisms for sanitizing the 'table' and 'stage' parameters in the CopyFromExternalStageToSnowflakeOperator.

Who is affected

Apache Airflow Providers Snowflake in all versions before 6.4.0

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Apache Airflow Providers Snowflake

    APP
    Apache
    < 6.4.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
SQLi
CWE
References

Related vulnerabilities

CVE-2025-24813CRITICAL9.8⚠ KEVPL ✓same vendor

Apache Tomcat: Path Equivalence prowadzący do RCE i ujawnienia danych

CVE-2024-38856CRITICAL9.8⚠ KEVPL ✓same vendor

Apache OFBiz — nieautoryzowane wykonanie kodu przez błędną autoryzację

CVE-2024-38475CRITICAL9.1⚠ KEVPL ✓same vendor

Apache HTTP Server mod_rewrite — ujawnienie kodu i RCE poprzez błędne escapowanie

CVE-2024-32113CRITICAL9.8⚠ KEVPL ✓same vendor

Path Traversal w Apache OFBiz umożliwiający zdalne wykonanie kodu

CVE-2024-27348CRITICAL9.8⚠ KEVPL ✓same vendor

RCE w Apache HugeGraph-Server — zdalne wykonanie poleceń bez uwierzytelnienia