Snowplow is a data-pipeline and analytics instrumentation platform with a modestly sized vulnerability footprint centered on components including Iglu Server, Enrich, Snowbridge, and Stream Collector. The recurring signal across its disclosures reflects resource-handling and exception-management weaknesses characteristic of event-streaming and data-processing infrastructure, particularly around memory and computational resource consumption and lifecycle management in high-throughput systems. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Snowplow over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-47214HIGH An issue was discovered in Iglu Server 0.13.0 and below. It is similar to CVE-2024-47212, but involves a different kind of malicious payload. As above, it can render Iglu Server co | Apr 3, 2025 | 7.5 | 22 | NO | NO |
CVE-2024-47212HIGH An issue was discovered in Iglu Server 0.13.0 and below. It involves sending very large payloads to a particular API endpoint of Iglu Server and can render it completely unresponsi | Apr 3, 2025 | 7.5 | 22 | NO | NO |
CVE-2024-56528HIGH This vulnerability affects Snowplow Collector 3.x before 3.3.0 (unless it’s set up behind a reverse proxy that establishes payload limits). It involves sending very large payloads | Apr 3, 2025 | 7.5 | 21 | NO | NO |
CVE-2024-47215HIGH An issue was discovered in Snowbridge setups sending data to Google Tag Manager Server Side. It involves attaching an invalid GTM SS preview header to events, causing them to be re | Apr 3, 2025 | 7.5 | 21 | NO | NO |
CVE-2024-47213HIGH An issue was discovered affecting Enrich 5.1.0 and below. It involves sending a maliciously crafted Snowplow event to the pipeline. Upon receiving this event and trying to validate | Apr 3, 2025 | 7.5 | 21 | NO | NO |
CVE-2024-47217MEDIUM An issue was discovered in Iglu Server 0.13.0 and below. It is similar to CVE-2024-47214, but involves an authenticated endpoint. It can render Iglu Server completely unresponsive. | Apr 3, 2025 | 6.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Snowplow.
Media articles that mention a CVE ID that affects a product developed by Snowplow — matched by CVE ID, not by vendor name.