CVE-2024-43382: Snowflake Jdbc

Medium severity, CVSS 5.9. EPSS: 0.2% chance of exploitation in the next 30 days.

Snowflake JDBC driver versions >= 3.2.6 and <= 3.19.1 have an Incorrect Security Setting that can result in data being uploaded to an encrypted stage without the additional layer of protection provided by client side encryption.

Affected products

  • Snowflake Snowflake Jdbc: from 3.2.6, before 3.20.0 (fixed in 3.20.0)

Published 2024-10-30. Last modified 2026-06-17.