CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.6. See the original NVD description below for full technical details.
CVE
CVE-2026-28381
Severity
CRITICAL
CVSS
9.6
EPSS
0.21%
Original NVD Description
The Snowflake datasource allows for GET/PUT commands, which can allow any user with access to run queries against the data source to read/write files between the local grafana server and the connected Snowflake host.
Related CVEs
Other vulnerabilities affecting the same vendor(s)