CVE Vulnerabilities

CVE-2025-46614

Insertion of Sensitive Information into Log File

Published: Apr 28, 2025 | Modified: Apr 29, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

In Snowflake ODBC Driver before 3.7.0, in certain code paths, the Driver logged the whole SQL query at the INFO level, aka Insertion of Sensitive Information into a Log File.

Weakness

The product writes sensitive information to a log file.

Potential Mitigations

References