PyPi: Prowler

PVE-2024-69613

Safety vulnerability ID: 69613

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Apr 24, 2024 Updated at Jun 07, 2024

Advisory

Prowler version 3.16.3 includes a fix that addresses privilege escalation vulnerabilities…

[This advisory has been limited. Please create a free account to view the full advisory.]

Affected package

prowler

Latest version: 4.2.4

Prowler is an Open Source security tool to perform AWS, GCP and Azure security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains hundreds of controls covering CIS, NIST 800, NIST CSF, CISA, RBI, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, AWS Well-Architected Framework Security Pillar, AWS Foundational Technical Review (FTR), ENS (Spanish National Security Scheme) and your custom security frameworks.

Affected versions

Fixed versions

Vulnerability changelog

What's Changed Fixes * fix(trufflehog): fix GitHub action of TruffleHog by sergargar i…

[This text has been limited. Please create a free account to view the full text.]

Resources