Security Advisory

CVE-2024-56528

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-04-03 00:00:00
Last updated 2025-04-07 18:54:12
Assigner mitre
State PUBLISHED

Description

This vulnerability affects Snowplow Collector 3.x before 3.3.0 (unless it’s set up behind a reverse proxy that establishes payload limits). It involves sending very large payloads to the Collector and can render it unresponsive to the rest of the requests. As a result, data would not enter the pipeline and would be potentially lost.