CVE-2026-33682
CVE-2026-33682 is a medium-severity vulnerability in Snowflake Streamlit with a CVSS 3.x base score of 4.7. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-918.
Key facts
- Severity: Medium (CVSS 3.x base score 4.7)
- EPSS exploit prediction: 0% (21st percentile)
- Actively exploited: Not listed in CISA KEV
- EU (EUVD) id: EUVD-2026-16444
- Weakness: CWE-918
- Affected product: Snowflake Streamlit
- Published:
- Last modified:
Description
Streamlit is a data oriented application development framework for python. Streamlit Open Source versions prior to 1.54.0 running on Windows hosts have an unauthenticated Server-Side Request Forgery (SSRF) vulnerability. The vulnerability arises from improper validation of attacker-supplied filesystem paths. In certain code paths, including within the `ComponentRequestHandler`, filesystem paths are resolved using `os.path.realpath()` or `Path.resolve()` before sufficient validation occurs. On Windows systems, supplying a malicious UNC path (e.g., `\\attacker-controlled-host\share`) can cause the Streamlit server to initiate outbound SMB connections over port 445. When Windows attempts to authenticate to the remote SMB server, NTLMv2 challenge-response credentials of the Windows user running the Streamlit process may be transmitted. This behavior may allow an attacker to perform NTLM relay attacks against other internal services and/or identify internally reachable SMB hosts via timing analysis. The vulnerability has been fixed in Streamlit Open Source version 1.54.0.
Frequently asked questions
- What is CVE-2026-33682?
- Streamlit is a data oriented application development framework for python. Streamlit Open Source versions prior to 1.54.0 running on Windows hosts have an unauthenticated Server-Side Request Forgery (SSRF) vulnerability. The vulnerability arises from improper validation of attacker-supplied filesystem paths. In certain code paths, including within the `ComponentRequestHandler`, filesystem paths are resolved using `os.path.realpath()` or `Path.resolve()` before sufficient validation occurs. On Windows systems, supplying a malicious UNC path (e.g., `\\attacker-controlled-host\share`) can cause the Streamlit server to initiate outbound SMB connections over port 445. When Windows attempts to authenticate to the remote SMB server, NTLMv2 challenge-response credentials of the Windows user running the Streamlit process may be transmitted. This behavior may allow an attacker to perform NTLM relay attacks against other internal services and/or identify internally reachable SMB hosts via timing analysis. The vulnerability has been fixed in Streamlit Open Source version 1.54.0.
- How severe is CVE-2026-33682?
- CVE-2026-33682 has a CVSS 3.x base score of 4.7, rated medium severity. It is exploitable over an adjacent network with high attack complexity, requires no privileges and no user interaction. Impact on confidentiality is low, integrity low, and availability none.
- Is CVE-2026-33682 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 0% (21st percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2026-33682?
- CVE-2026-33682 affects Snowflake Streamlit. See the affected-products list for the exact vulnerable versions.
- How do I fix CVE-2026-33682?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- Does CVE-2026-33682 have an EU (EUVD) identifier?
- Yes. CVE-2026-33682 is tracked in the ENISA EU Vulnerability Database (EUVD) as EUVD-2026-16444.
- When was CVE-2026-33682 published?
- CVE-2026-33682 was published on 2026-03-26 and last updated on 2026-06-17.
References
- https://github.com/streamlit/streamlit/commit/23692ca70b2f2ac720c72d1feb4f190c9d6eed76
- https://github.com/streamlit/streamlit/releases/tag/1.54.0
- https://github.com/streamlit/streamlit/security/advisories/GHSA-7p48-42j8-8846
Affected products (1)
- cpe:2.3:a:snowflake:streamlit:*:*:*:*:*:windows:*:*
More vulnerabilities in Snowflake Streamlit
- CVE-2024-42474 — Medium (CVSS 6.5): Streamlit is a data oriented application development framework for python. Snowflake Streamlit open source addressed a…
- CVE-2022-35918 — Medium (CVSS 6.5): Streamlit is a data oriented application development framework for python. Users hosting Streamlit app(s) that use…
- CVE-2023-27494 — Medium (CVSS 5.9): Streamlit, software for turning data scripts into web applications, had a cross-site scripting (XSS) vulnerability in…
- CVE-2026-10804 — Low (CVSS 3.6): A vulnerability has been found in Streamlit up to 1.53.0. Impacted is an unknown function in the library…
All CVEs affecting Snowflake Streamlit →
Other CWE-918 (Server-Side Request Forgery (SSRF)) vulnerabilities
- CVE-2026-54734 — Critical (CVSS 10.0): Prebid Server Java is the Java version of Prebid Server. Prior to 3.43.0, certain bidder adapters interpolate…
- CVE-2026-76193 — Critical (CVSS 10.0): Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in…
- CVE-2026-69502 — Critical (CVSS 10.0): Server-side request forgery (ssrf) in Azure SQL Database allows an unauthorized attacker to elevate privileges over a…
- CVE-2026-65801 — Critical (CVSS 10.0): Server-side request forgery (ssrf) in Microsoft Exchange Online allows an unauthorized attacker to elevate privileges…
- CVE-2026-48331 — Critical (CVSS 10.0): Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in…
- CVE-2026-54735 — Critical (CVSS 10.0): Prebid Server is an open-source solution for running real-time advertising auctions in the cloud. Prior to version…
Browse all CWE-918 (Server-Side Request Forgery (SSRF)) vulnerabilities →