César Arroba
|
681be7537d
|
chore(security): migrate suppressions to .trivyignore.yaml (PROWLER-2327) (#12314)
|
2026-08-04 11:13:16 +02:00 |
|
César Arroba
|
94254555a4
|
fix(ui): drop apk upgrade and move the base digest forward (PROWLER-2323) (#12313)
|
2026-08-04 11:07:34 +02:00 |
|
 ![coderabbitai[bot]](/assets/img/avatar_default.png) 
|
2646068e7e
|
fix(app): correct the worker KEDA PostgreSQL scaler (#12055)
Co-authored-by: Cursor <cursoragent@cursor.com>
Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com>
Co-authored-by: Utwo <mihai.legat@gmail.com>
|
2026-08-04 10:47:02 +02:00 |
|
Daniel Barranquero
|
caf27de6ee
|
fix(m365): bump microsoft-kiota packages to 1.9.10 so guest-user CA checks parse guestOrExternalUserTypes (#12280)
|
2026-08-04 10:37:04 +02:00 |
|
César Arroba
|
aab8154139
|
ci(workflows): align container build-push workflows across api, ui, mcp and sdk (#12310)
|
2026-08-04 10:25:31 +02:00 |
|
 ![coderabbitai[bot]](/assets/img/avatar_default.png)
|
1de779c978
|
fix(sdk): resolve entry-point checks on built-in providers (#12294)
Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-04 10:24:55 +02:00 |
|
César Arroba
|
f4d6cd8609
|
fix(deps): restore the SDK dependency to master (PROWLER-2328) (#12309)
|
2026-08-04 09:59:21 +02:00 |
|
 Pedro MartínandDaniel Barranquero
|
b3d174d0c1
|
feat(m365): add CIS M365 v7.0.0 admincenter shared bookings check (#12147)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-08-04 09:46:47 +02:00 |
|
César Arroba
|
8ebb4a1ee7
|
fix(container): clear the Private Cloud image vulnerabilities (PROWLER-2291) (#12258)
|
2026-08-04 09:41:47 +02:00 |
|
Maringanti Vasist Acharya
|
abf660ce06
|
fix(sdk): renumber Huawei Cloud off E2E Networks' range, and correct the M365 header comment (#12296)
|
2026-08-04 09:36:46 +02:00 |
|
Daniel Barranquero
|
a19fd70001
|
feat(aws): add pathfinding.cloud privilege-escalation coverage (#12237)
|
2026-08-04 08:59:52 +02:00 |
|
Pepe Fagoaga
|
9b6a239abe
|
fix(docs): v5.37.0 changelog date (#12304)
|
2026-08-03 18:31:30 +02:00 |
|
  
|
8c0fbf5073
|
docs: v5.37.0 changelog highlights (#12264)
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com>
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-08-03 18:24:44 +02:00 |
|
 Prowler Botandprowler-bot
|
ce77eb7f41
|
chore(release): Bump versions to v5.38.0 (#12302)
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com>
|
2026-08-03 18:20:09 +02:00 |
|
 CopilotandPepe Fagoaga
|
e15f6970ef
|
fix(ci): use PROWLER_BOT_ACCESS_TOKEN for release freeze (#12295)
Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-08-03 14:45:23 +02:00 |
|
 
|
b9aa863e52
|
chore(changelog): v5.37.0 (#12293)
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-08-03 14:35:29 +02:00 |
|
Alan Buscaglia
|
39cbcbfe2b
|
chore(ui): reclassify deployment mode changelog (#12292)
|
2026-08-03 14:21:07 +02:00 |
|
lydiavilchez
|
f19106281b
|
feat(aws): add Nitro Enclaves security checks for EC2 and KMS (#12283)
|
2026-08-03 13:00:26 +02:00 |
|
mintlify[bot]
|
137b388df9
|
docs: fix typos and grammar (#12278)
Co-authored-by: mintlify[bot] <109931778+mintlify[bot]@users.noreply.github.com>
|
2026-08-03 09:35:37 +02:00 |
|
mintlify[bot]
|
e0cb18bdbd
|
docs: brand tone and writing style fixes (#12277)
Co-authored-by: mintlify[bot] <109931778+mintlify[bot]@users.noreply.github.com>
|
2026-08-03 09:16:47 +02:00 |
|
Rubén De la Torre Vico
|
b08d2eb472
|
fix(api): prevent 500 on Jira integrations with sparse fieldsets (#12261)
|
2026-07-31 15:03:04 +02:00 |
|
 Pablo Fernandez Guerra (PFE)andPablo F.G
|
74a760517e
|
docs(organizations): document GCP organization onboarding (#12262)
Co-authored-by: Pablo F.G <pablo.fernandez@prowler.com>
|
2026-07-31 13:31:05 +02:00 |
|
 Pablo Fernandez Guerra (PFE)andPablo F.G
|
2db3bebd15
|
feat(ui): GCP org onboarding — canonical contract + shared lifecycle (#12255)
Co-authored-by: Pablo F.G <pablo.fernandez@prowler.com>
|
2026-07-31 13:30:46 +02:00 |
|
Pedro Martín
|
b56df840fc
|
chore(ui): migrate 5243 changes (#12269)
|
2026-07-31 13:10:17 +02:00 |
|
César Arroba
|
bd9fa88d2a
|
fix(ci): harden osv-scan.sh against a missing osv-scanner.toml (#12267)
|
2026-07-31 13:09:58 +02:00 |
|
Rubén De la Torre Vico
|
9adc248c05
|
docs(mcp): document the Cloud-only prowler_cloud_* tool namespace (#12266)
|
2026-07-31 12:16:04 +02:00 |
|
Rubén De la Torre Vico
|
ea0c7eb271
|
fix(mcp): prevent prowler_list_integrations 500 on tenants with a Jira integration (#12259)
|
2026-07-31 11:02:45 +02:00 |
|
 
|
88c666a0d2
|
feat(attack-paths): Add 4 IAM privilege escalation detection queries (#11460)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
Co-authored-by: Josema Camacho <josema@prowler.com>
|
2026-07-31 10:29:28 +02:00 |
|
César Arroba
|
7275b46707
|
chore(ci): repin trivy-action to a resolvable tag (#12257)
|
2026-07-31 09:51:18 +02:00 |
|
 Rubén De la Torre Vicoandalejandrobailo
|
60bc06271a
|
feat(ui): improve Lighthouse per-page suggested prompts (#12219)
Co-authored-by: alejandrobailo <alejandrobailo94@gmail.com>
|
2026-07-31 09:43:32 +02:00 |
|
stepsecurity-app[bot]
|
8abd72e857
|
feat(security): security best practices from StepSecurity (#12254)
Signed-off-by: StepSecurity Bot <bot@stepsecurity.io>
Co-authored-by: stepsecurity-app[bot] <188008098+stepsecurity-app[bot]@users.noreply.github.com>
|
2026-07-31 09:27:01 +02:00 |
|
 ![coderabbitai[bot]](/assets/img/avatar_default.png)
|
9185b043da
|
fix(sdk): exclude sdk_only providers from scan config schema (#12094)
Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com>
Co-authored-by: CodeRabbit <noreply@coderabbit.ai>
|
2026-07-31 08:49:31 +02:00 |
|
Adrián Peña
|
3dd6b29477
|
fix(api): make social signup transactional (#12245)
|
2026-07-30 16:28:45 +02:00 |
|
Hugo Pereira Brito
|
6db407ed3c
|
fix(html): escape provider data in reports (#12221)
|
2026-07-30 14:29:25 +01:00 |
|
  
|
0b98a34687
|
feat(aws): add glue_catalog_connection_no_secrets check (#11963)
Signed-off-by: Alex Chen <l46983284@gmail.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
Co-authored-by: Rishi943 <84287593+Rishi943@users.noreply.github.com>
Co-authored-by: Utkarsh <udaydeepak1928@gmail.com>
|
2026-07-30 15:12:37 +02:00 |
|
 Siddhant JadhavandDaniel Barranquero
|
fc0204a40d
|
feat(codecommit): add codecommit service and codecommit_repository_no_secrets check (#11846)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-07-30 15:05:27 +02:00 |
|
Alan Buscaglia
|
7a62926a09
|
fix(ui): stabilize cloud e2e prerequisites (#12024)
|
2026-07-30 14:54:26 +02:00 |
|
 
|
7a6a35afec
|
feat(sagemaker): add sagemaker_endpoint_config_kms_encryption_enabled check (#12118)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
Co-authored-by: Alex Chen <l46983284@gmail.com>
|
2026-07-30 14:29:45 +02:00 |
|
 
|
b7281a5221
|
fix(sdk): align secret scan source line indexing (#12141)
Co-authored-by: jbchief-dev <285331266+jbchief-dev@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-07-30 12:44:20 +02:00 |
|
Daniel Barranquero
|
5c4b0ba1fe
|
fix(api): scope Attack Paths predefined queries with provider label (#12167)
|
2026-07-30 11:55:24 +02:00 |
|
 César ArrobaandRubén De la Torre Vico
|
f3b8ac1dbb
|
fix(mcp): run streamable HTTP stateless to stop session memory leak (#12235)
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com>
|
2026-07-30 11:40:55 +02:00 |
|
Adrián Peña
|
8dac2a7ccf
|
fix(api): assign fallback role to SAML users (#12223)
|
2026-07-30 11:17:25 +02:00 |
|
Rubén De la Torre Vico
|
6192b8ac32
|
feat(mcp): add integrations tools (#12138)
|
2026-07-30 11:11:09 +02:00 |
|
Adrián Peña
|
e49babb9e7
|
fix(ui): stabilize SAML ACS URL field (#12236)
|
2026-07-30 11:05:24 +02:00 |
|
Josema Camacho
|
f8be9afa7c
|
fix(api): safely decode stored Celery task arguments (#12165)
|
2026-07-30 10:30:19 +02:00 |
|
Adrián Peña
|
ecf7ec8e85
|
fix(api): respect provider group scope in provider actions (#12216)
|
2026-07-30 10:06:57 +02:00 |
|
stepsecurity-app[bot]
|
a57a507cee
|
feat(security): security best practices from StepSecurity (#12232)
Signed-off-by: StepSecurity Bot <bot@stepsecurity.io>
Co-authored-by: stepsecurity-app[bot] <188008098+stepsecurity-app[bot]@users.noreply.github.com>
|
2026-07-30 09:24:44 +02:00 |
|
Pedro Martín
|
9b565586da
|
docs(compliance): improve cross-provider compliance guide (#12162)
|
2026-07-30 07:59:55 +02:00 |
|
Alejandro Bailo
|
17f726f816
|
feat(ui): enrich Lighthouse context on Overview and remaining pages (#12220)
|
2026-07-29 18:12:40 +02:00 |
|
Alan Buscaglia
|
3fd748994a
|
docs(msp): align guides with current portal behavior (#12105)
|
2026-07-29 17:21:16 +02:00 |
|