← Back to feed
Vulnerabilities & PatchesEmerging1 sourceAug 17, 2026 · 18:44via The Hacker News

Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection

Brief

Cybersecurity researchers at Wiz have disclosed a new GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository that it said could be exploited through a crafted GitHub issue to execute commands in a workflow containing internal Jira credentials.

The issue was present in . github/workflows/jira_issue. yml, which ran when a

Read more on The Hacker News