AI Vulnerability in Snowflake's GitHub Repo Exploited by Autonomous Agent

AI Vulnerability in Snowflake's GitHub Repo Exploited by Autonomous Agent

First seen 17 Aug 2026, 17:31 UTC News.YcombinatorTheregister 90% similarity 70.5

Article Content

Browse articles
ThreatCluster

A critical vulnerability was discovered in Snowflake's GitHub Actions workflow, allowing unauthorized command execution. The flaw was identified by Wiz Research's AI tool, Red Agent, during a sanctioned bug hunt on June 23, 2026. The vulnerability, introduced by GitHub Copilot Autofix on June 18, 2026, involved a script injection attack via specially crafted GitHub issue titles. This allowed an unauthenticated user to execute arbitrary commands within a GitHub Actions runner. Snowflake remediated the issue on the same day it was reported and confirmed that Wiz was the only entity to access the exposed data. The incident emphasizes the risks posed by AI coding assistants in software development. Wiz deleted all accessed data and highlighted the inadequacy of human code reviews in detecting such vulnerabilities. Snowflake is collaborating with Wiz to share lessons learned with the industry.

Key Points: • A GitHub Actions vulnerability allowed unauthorized command execution in Snowflake's repo. • The flaw was introduced by GitHub Copilot Autofix just five days before its discovery. • Wiz's AI tool autonomously exploited the vulnerability during a sanctioned security assessment.

ThreatCluster AI How this analysis works

Timeline

2026-06-18
Vulnerability introduced by AI
GitHub Copilot Autofix co-authored a commit that removed input sanitization, creating a script injection flaw.
News.Ycombinator
2026-06-23
Vulnerability discovered and reported
Wiz's Red Agent identified the GitHub Actions flaw and reported it to Snowflake, which fixed it the same day.
Theregister
2026-06-24
Credentials rotated
Snowflake rotated the affected Jira credentials following the vulnerability disclosure and confirmed no unauthorized access.
Theregister

Community

Browse all →

Tracked Entities in This Story