CVE-2025-46614
Severity CVSS v4.0:
Pending analysis
Type:
CWE-532
Information Exposure Through Log Files
Publication date:
28/04/2025
Last modified:
29/04/2025
Description
In Snowflake ODBC Driver before 3.7.0, in certain code paths, the Driver logged the whole SQL query at the INFO level, aka Insertion of Sensitive Information into a Log File.
Impact
Base Score 3.x
3.30
Severity 3.x
LOW