Cfripper

Latest version: v1.16.0

Safety actively analyzes 687881 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 4 of 14

1.7.1

Not secure
Fixes
- `EBSVolumeHasSSERule` can now understand `encrypted_status` if modelled as a `bool`.
- Add support to `EC2SecurityGroupOpenToWorldRule` for use cases where ports are not defined in the CloudFormation template. By default, this means all ports are included.
Updates
- Updated `EBSVolumeHasSSERule` to iterate only over `AWS::EC2::Volume` resources.
- Update `RuleConfig` documentation.
Improvements
- Bump `pycfmodel` to `0.18.0`.

1.7.0

Not secure
Updates
- Added `resource_types` to failures.

1.6.0

Not secure
Updates
- Created `GenericResourceWildcardPrincipalRule` to be an abstract for wildcard principals for Generic resources.
- Created `GenericResourcePartialWildcardPrincipalRule` and `GenericResourceFullWildcardPrincipalRule` to evaluate Generic resources.
Fixes
- Rollback `GenericWildcardPrincipalRule` as it was in `1.5.2`.

1.5.3

Not secure
Updates
- Updates `GenericWildcardPrincipalRule` to understand the `GenericResource`.
Fixes
- Stopped using `_statement_as_list()` when retrieving statements in favor of `statement_as_list()`.

1.5.2

Not secure
Updates
- Updates `WildcardResourceRule` for a better use with the `GenericResource`.
Fixes
- Stopped using `_statement_as_list()` when retrieving statements in several rules in favor of `statement_as_list()`.

1.5.1

Not secure
Updates
- Created `GenericResourceWildcardPolicyRule` in order to check for WildcardPolicy issues in generic resources.
- Added documentation regarding the deprecation of `S3BucketPolicyWildcardActionRule`, `SNSTopicPolicyWildcardActionRule` and `SQSQueuePolicyWildcardActionRule`.
- Covering cases for already mapped models in rules inherited from `GenericWildcardPolicyRule` with the new `GenericResourceWildcardPolicyRule`.

Page 4 of 14

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.