pedrooot
|
b7f1ba8e21
|
feat(security): add missing endpoints to allowlist
|
2026-03-30 09:49:15 +02:00 |
|
Raajhesh Kannaa Chidambaram
|
db1edf5ca7
|
feat(aws): add internet-exposed category to 13 checks (#10502)
Co-authored-by: Raajhesh Kannaa Chidambaram <495042+raajheshkannaa@users.noreply.github.com>
|
2026-03-30 08:59:29 +02:00 |
|
rchotacode
|
82d3ccec18
|
fix(oci): Add multi region filtering argument support (#10473)
Co-authored-by: Ronan Chota <ronan.chota@saic.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-03-30 08:45:16 +02:00 |
|
rchotacode
|
ff46281f64
|
fix(oci): Fix service region support (#10472)
Co-authored-by: Ronan Chota <ronan.chota@saic.com>
|
2026-03-30 08:19:32 +02:00 |
|
Josema Camacho
|
94e234cefb
|
fix(api): use raw FK ids in membership post_delete signal to avoid cascade lookup failures (#10497)
|
2026-03-27 16:16:28 +01:00 |
|
Pepe Fagoaga
|
8267fc4813
|
fix(step_security): keep notify in audit mode (#10496)
|
2026-03-27 16:01:24 +01:00 |
|
Josema Camacho
|
8bfeee238b
|
feat(api): replace _provider_id property with label-based isolation and regex injection for custom queries (#10402)
|
2026-03-27 14:31:56 +01:00 |
|
Josema Camacho
|
cc197ea901
|
feat(api): add periodic cleanup of stale Attack Paths scans with dead-worker detection (#10387)
|
2026-03-27 14:17:22 +01:00 |
|
Pepe Fagoaga
|
2b5d015e09
|
feat(security): add missing endpoints to allowlist (#10495)
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2026-03-27 13:53:52 +01:00 |
|
Adrián Peña
|
73e0ac6892
|
chore: update dependencies (#10492)
|
2026-03-27 13:13:47 +01:00 |
|
Adrián Peña
|
700b51ddad
|
chore: update Python version references from 3.9 to 3.10 (#10493)
|
2026-03-27 13:13:36 +01:00 |
|
Pepe Fagoaga
|
417be55604
|
feat(security): block mode for hardened runners (#10482)
|
2026-03-27 13:08:59 +01:00 |
|
Hugo Pereira Brito
|
f75ce7b4dd
|
feat(ui): add OpenCypher query editor (#10445)
|
2026-03-27 10:58:48 +00:00 |
|
Hugo Pereira Brito
|
269d9dfe41
|
feat(cli): add --resource-group flag to filter checks by resource group (#10479)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-03-27 11:55:28 +01:00 |
|
Apoorv Darshan
|
7b0ce7842b
|
fix: remove return statements from finally blocks (#10102)
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-03-27 09:23:15 +01:00 |
|
Terry Franklin
|
0a11ca4a68
|
feat(celery): VALKEY_SCHEME environment variable (#10420)
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-03-27 09:22:35 +01:00 |
|
Adrián Peña
|
c953fa7e67
|
fix(api): resolve check_title filter to check_id for consistent finding-group counts (#10486)
|
2026-03-27 09:05:02 +01:00 |
|
Pepe Fagoaga
|
73907db856
|
fix(trivy-scan): don't comment if PR from fork (#10490)
|
2026-03-27 08:37:19 +01:00 |
|
Raajhesh Kannaa Chidambaram
|
041f95b3df
|
feat(ec2): add check for SG ingress from public IPs to any port (#10335)
Co-authored-by: Raajhesh Kannaa Chidambaram <495042+raajheshkannaa@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-03-26 17:21:16 +01:00 |
|
stepsecurity-app[bot]
|
716c130140
|
feat(security): security best practices from StepSecurity (#10480)
Signed-off-by: StepSecurity Bot <bot@stepsecurity.io>
Co-authored-by: stepsecurity-app[bot] <188008098+stepsecurity-app[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-03-26 13:58:19 +01:00 |
|
Hugo Pereira Brito
|
c651f60e3a
|
feat(m365): add entra_conditional_access_policy_mdm_compliant_device_required check (#10220)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-03-26 11:36:30 +01:00 |
|
Adrián Peña
|
dd00d71a07
|
fix(api): fix finding groups muted filter, counters and reaggregation (#10477)
|
2026-03-26 10:35:21 +01:00 |
|
Sandiyo Christan
|
834d1bca49
|
feat(awslambda): enrich Function model with inventory fields and add 3 security checks (#10381)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-03-26 10:33:39 +01:00 |
|
Davidm4r
|
2cf45c72b6
|
fix(api): remove MANAGE_ACCOUNT permission requirement for listing or create a tenant (#10468)
|
2026-03-26 09:41:16 +01:00 |
|
Pepe Fagoaga
|
213e18724d
|
fix: Prowler's changelog (#10475)
|
2026-03-25 16:07:45 +01:00 |
|
Pepe Fagoaga
|
571141f57c
|
fix(aws): set partition's region for global services (#10458)
|
2026-03-25 15:47:51 +01:00 |
|
Adrián Peña
|
45f0909c3e
|
chore(api): pin all unpinned dependencies to exact versions (#10469)
|
2026-03-25 13:27:04 +01:00 |
|
Alan Buscaglia
|
b01fcc6cb2
|
fix(ui): refine filter clear and undo behavior in Findings page (#10446)
|
2026-03-25 13:20:10 +01:00 |
|
Adrián Peña
|
2ddd5b3091
|
chore: bump minimum Python to 3.10 and pin SDK dependencies (#10464)
|
2026-03-25 12:32:28 +01:00 |
|
Raajhesh Kannaa Chidambaram
|
6100932c60
|
feat(glue): add check for plaintext secrets in ETL job arguments (#10368)
Co-authored-by: Raajhesh Kannaa Chidambaram <495042+raajheshkannaa@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-03-25 12:25:36 +01:00 |
|
lydiavilchez
|
1c2b146e6e
|
fix(docs): replace Google Workspace customer ID image with English version (#10467)
|
2026-03-25 11:49:30 +01:00 |
|
McRolly NWANGWU
|
833f3779ef
|
feat(cloudfront): detect Standard Logging v2 via CloudWatch Log Delivery (#10090)
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-03-25 10:09:21 +00:00 |
|
Daniel Barranquero
|
c752811666
|
fix(oci): false positive for kms key rotation check (#10450)
|
2026-03-25 11:09:02 +01:00 |
|
Daniel Barranquero
|
4d1f7626f9
|
fix(oci): false positive for password policies (#10453)
|
2026-03-25 10:52:31 +01:00 |
|
Davidm4r
|
9bf2a13177
|
fix: resolve 403 error for admin users listing tenants (#10460)
|
2026-03-25 10:13:54 +01:00 |
|
Josema Camacho
|
d15e67e2e5
|
fix(api): filter neo4j.io defunct connection logs in Sentry before_send (#10452)
|
2026-03-25 09:55:12 +01:00 |
|
Pepe Fagoaga
|
20cf5562b8
|
chore: update org members (#10461)
|
2026-03-25 09:36:10 +01:00 |
|
Pepe Fagoaga
|
36279f694c
|
chore(gha): ignore zizmor rules and fix version comment (#10459)
|
2026-03-25 09:09:36 +01:00 |
|
César Arroba
|
c991a1d0e8
|
chore: fix UI bump version (#10451)
|
2026-03-24 17:39:49 +01:00 |
|
Adrián Peña
|
aa3641718b
|
fix(api): populate compliance data in check_metadata for findings (#10449)
|
2026-03-24 17:19:53 +01:00 |
|
Adrián Peña
|
bb80797392
|
fix(api): support finding-group aggregated filters (#10428)
|
2026-03-24 16:39:26 +01:00 |
|
Hugo Pereira Brito
|
435624fcd4
|
fix(sdk): support renamed OCI IdP mapping events (#10416)
|
2026-03-24 13:18:16 +00:00 |
|
Felix Dreissig
|
9e67f31913
|
feat(gcp): Add checks for GCP Gemini (Generative Language) API (#10280)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-03-24 14:11:27 +01:00 |
|
Prowler Bot
|
0984cfd75b
|
chore(api): Bump version to v1.24.0 (#10440)
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com>
|
2026-03-24 14:05:48 +01:00 |
|
Prowler Bot
|
c1044ef491
|
chore(release): Bump version to v5.23.0 (#10439)
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com>
|
2026-03-24 14:05:05 +01:00 |
|
Prowler Bot
|
19c4c9251c
|
docs: Update version to v5.22.0 (#10441)
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com>
|
2026-03-24 14:03:47 +01:00 |
|
Josema Camacho
|
55ed7a0663
|
docs(CHANGELOG): cutting for 5.22.0 (#10437)
|
2026-03-24 12:15:44 +01:00 |
|
Alan Buscaglia
|
0599040d4e
|
feat(ui): add batch apply pattern to Findings filters (#10388)
|
2026-03-24 11:09:11 +01:00 |
|
lydiavilchez
|
737d20d2c1
|
docs(googleworkspace): add Cloud/App documentation (#10421)
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com>
|
2026-03-24 09:48:01 +01:00 |
|
Josema Camacho
|
844efbd046
|
perf(api): deduplicate nodes before ProwlerFinding lookup in Attack Paths queries (#10424)
|
2026-03-23 17:16:15 +01:00 |
|