CVE-2024-47215

An issue was discovered in Snowbridge setups sending data to Google Tag Manager Server Side. It involves attaching an invalid GTM SS preview header to events, causing them to be retried indefinitely. As a result, the performance of forwarding events to GTM SS overall can be affected (latency, throughput).
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:snowplow:snowbridge:-:*:*:*:*:*:*:*

History

23 Apr 2025, 14:55

Type Values Removed Values Added
CPE cpe:2.3:a:snowplow:snowbridge:-:*:*:*:*:*:*:*
References () https://support.snowplow.io/hc/en-us/articles/26318139354909-Update-Critical-Snowplow-Security-Updates-Impact-on-Open-Source-Software-UsersĀ - () https://support.snowplow.io/hc/en-us/articles/26318139354909-Update-Critical-Snowplow-Security-Updates-Impact-on-Open-Source-Software-UsersĀ - Patch, Vendor Advisory
First Time Snowplow
Snowplow snowbridge

03 Apr 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-03 21:15

Updated : 2025-04-23 14:55


NVD link : CVE-2024-47215

Mitre link : CVE-2024-47215


JSON object : View

Products Affected

snowplow

  • snowbridge
CWE

No CWE.