The probability is the direct output of the EPSS model, and conveys an overall sense of the threat of exploitation in the wild. The percentile measures the EPSS probability relative to all known EPSS scores. Note: This data is updated daily, relying on the latest available EPSS model version. Check out the EPSS documentation for more details.
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade snowflake-sdk
to version 2.0.2 or higher.
snowflake-sdk is a Node.js driver for Snowflake
Affected versions of this package are vulnerable to Incorrect Permission Assignment for Critical Resource on the temporary credential cache used for the EXTERNALBROWSER
and USERNAME_PASSWORD_MFA
authentication methods with temporary credential caching enabled. A user with write permissions on the cache directory can plant a file there to capture the cached credentials when they are written and gain access.