Prowler 3.16.17 - Back in the Village
What's Changed
Fixes
- fix(aws): change check metadata ec2_securitygroup_allow_wide_open_public_ipv4 by @prowler-bot in #4949
- fix(aws): enchance check cloudformation_stack_outputs_find_secrets by @prowler-bot in #4861
- fix(ec2): Manage
UnicodeDecodeError
when reading user data by @github-actions in #4788 - fix(gcp): solve errors in GCP services by @prowler-bot in #5123
- fix(inspector2): Ensure Inspector2 is enabled for ECR, EC2, Lambda and Lambda Code by @prowler-bot in #5066
- fix(security-groups): remove RFC1918 from ec2_securitygroup_allow_wide_open_public_ipv4 by @prowler-bot in #4952
- fix(v3): remove not supported checks by @sergargar in #5126
- fix(vpc): check all routes tables in subnet by @prowler-bot in #5121
Chores
- chore(aws): match all AWS resource types with SecurityHub supported types in metadata by @prowler-bot in #5064
- chore(aws): Remove token from log line by @jfagoagas in #4904
- chore(awslambda): Enhance function public access check called from other resource by @github-actions in #4793
- chore(azure): Fix CIS 2.1 mapping by @github-actions in #4780
- chore(docs): change ResourceType link of Security Hub by @prowler-bot in #5096
- chore(regions_update): Changes in regions for AWS services by @prowler-bot in #5083
- chore(ssm): add trusted accounts variable to ssm check by @prowler-bot in #5117
- chore(test): improve
iam_root_hardware_mfa_enabled
tests by @github-actions in #4834 - chore(version): update version logic in Prowler by @github-actions in #4776
Dependencies
- chore(dependencies): update boto3 and botocore packages by @prowler-bot in #4986
- chore(deps): bump azure-identity from 1.17.1 to 1.18.0 by @dependabot in #5105
- chore(deps): bump azure-mgmt-compute from 32.0.0 to 33.0.0 by @dependabot in #4858
- chore(deps): bump azure-mgmt-containerservice from 31.0.0 to 32.0.0 by @dependabot in #5040
- chore(deps): bump azure-mgmt-cosmosdb from 9.5.1 to 9.6.0 by @dependabot in #5103
- chore(deps): bump azure-mgmt-web from 7.3.0 to 7.3.1 by @dependabot in #4810
- chore(deps): bump azure-storage-blob from 12.22.0 to 12.23.0 by @dependabot in #5078
- chore(deps): bump boto3 from 1.35.21 to 1.35.23 by @dependabot in #5114
- chore(deps): bump botocore from 1.35.22 to 1.35.23 by @dependabot in #5101
- chore(deps): bump google-api-python-client from 2.145.0 to 2.146.0 by @dependabot in #5079
- chore(deps): bump msgraph-sdk from 1.7.0 to 1.8.0 by @dependabot in #5102
- chore(deps): bump peter-evans/create-pull-request from 6 to 7 by @dependabot in #4924
- chore(deps): bump pydantic from 1.10.17 to 1.10.18 by @dependabot in #4857
- chore(deps): bump pytz from 2024.1 to 2024.2 by @dependabot in #5006
- chore(deps): bump setuptools from 74.1.2 to 75.1.0 by @dependabot in #5054
- chore(deps): bump slack-sdk from 3.33.0 to 3.33.1 by @dependabot in #5104
- chore(deps): bump tj-actions/changed-files from 44 to 45 by @dependabot in #4823
- chore(deps): bump trufflesecurity/trufflehog from 3.82.1 to 3.82.2 by @dependabot in #5051
- chore(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.2.8 to 1.2.9 by @dependabot in #5020
- chore(deps-dev): bump moto from 5.0.13 to 5.0.14 by @dependabot in #4963
- chore(deps-dev): bump pylint from 3.2.6 to 3.2.7 by @dependabot in #4919
- chore(deps-dev): bump pytest-env from 1.1.4 to 1.1.5 by @dependabot in #5092
- chore(deps-dev): bump pytest from 8.3.2 to 8.3.3 by @dependabot in #4994
- chore(deps-dev): bump safety from 3.2.6 to 3.2.7 by @dependabot in #4897
- chore(deps-dev): bump vulture from 2.11 to 2.12 by @dependabot in #5075
Full Changelog: 3.16.16...3.16.17