CVE-2024-47213

An issue was discovered affecting Enrich 5.1.0 and below. It involves sending a maliciously crafted Snowplow event to the pipeline. Upon receiving this event and trying to validate it, Enrich crashes and attempts to restart indefinitely. As a result, event processing would be halted.
Configurations

Configuration 1 (hide)

cpe:2.3:a:snowplow:enrich:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-04-03 21:15

Updated : 2025-04-23 14:58


NVD link : CVE-2024-47213

Mitre link : CVE-2024-47213

CVE.ORG link : CVE-2024-47213


JSON object : View

Products Affected

snowplow

  • enrich
CWE
CWE-404

Improper Resource Shutdown or Release