CVE-2026-86600
Awaiting Analysis Awaiting Analysis - Queue

WORKLOAD_IDENTITY Token Spoofing in Snowflake Drivers

Vulnerability report for CVE-2026-86600, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-08

Last updated on: 2026-09-10

Assigner: SNOWFLAKE

Description

In affected Snowflake drivers, WORKLOAD_IDENTITY authentication requests a cloud workload-identity token and attaches it to the login request without verifying that the configured host is a Snowflake endpoint. An attacker who can modify the connection configuration can cause the driver to mint a fresh attestation and send it to a host they control. The captured token can be replayed to Snowflake for its remaining lifetime in accounts where that workload identity is already registered. On Azure, the token audience is also taken from connection configuration. Combined with an attacker-controlled host, the driver can request a Managed Identity access token scoped to a non-Snowflake Azure resource and deliver it to the attacker. That path is the only case in which impact extends beyond Snowflake; it is bounded by the token lifetime and the managed identity’s permissions. Successful exploitation requires WORKLOAD_IDENTITY authentication on a workload that already has an ambient cloud identity. Patched driver versions restrict this authenticator to recognized Snowflake hosts. Users must manually upgrade.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-08
Last Modified
2026-09-10
Generated
2026-09-29
AI Q&A
2026-09-09
EPSS Evaluated
2026-09-27
NVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
snowflake snowflake_drivers *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-522 The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
CWE-441 The product receives a request, message, or directive from an upstream component, but the product does not sufficiently preserve the original source of the request before forwarding the request to an external actor that is outside of the product's control sphere. This causes the product to appear to be the source of the request, leading it to act as a proxy or other intermediary between the upstream component and the external actor.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability affects Snowflake drivers using WORKLOAD_IDENTITY authentication. The driver requests a cloud workload-identity token and attaches it to a login request without verifying if the host is a legitimate Snowflake endpoint. An attacker who modifies the connection configuration can trick the driver into sending the token to a host they control. The token can then be replayed to Snowflake for its remaining lifetime if the workload identity is already registered in the target account.

Detection Guidance

Check if your Snowflake drivers are outdated and not patched. Review connection configurations for WORKLOAD_IDENTITY authentication and verify that only trusted Snowflake endpoints are allowed. Monitor network traffic for unexpected token requests or connections to unrecognized hosts.

Impact Analysis

An attacker could gain unauthorized access to Snowflake accounts by replaying stolen tokens. On Azure, the attacker might also obtain a Managed Identity access token scoped to a non-Snowflake Azure resource, depending on the token's permissions and lifetime. Successful exploitation requires the targeted workload to already have an ambient cloud identity configured.

Mitigation Strategies

Upgrade to the latest patched Snowflake driver versions that restrict WORKLOAD_IDENTITY to recognized Snowflake hosts. Review and update connection configurations to ensure only valid Snowflake endpoints are used. Rotate any potentially exposed workload identity tokens.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-86600. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart