github Checkmarx/kics v1.5.3

latest releases: v2.1.3, v2.1.3-integrations, v2.1.2...
2 years ago

🐛 Bug fixes

fix(analyzer): fixed and improved regexes in analyzer #4857
fix(reports): version output on reports #4879
fix(query): extend container_is_privileged k8s rule to cover additional resource kinds by @Churro in #4882
fix(library): fixed "Generic:354: rego_type_error: rule named engines redeclared at Common:354" #4862
fix(query): corrected tag flagging invalid_image k8s rule by @Churro in #4894

📦 Dependency updates bumps

build(deps): bump mvdan.cc/sh/v3 from 3.4.2 to 3.4.3 #4865
build(deps): bump github.com/aws/aws-sdk-go from 1.42.53 to 1.43.9 #4902 #4861
ci(deps): bump actions/setup-python from 2.3.2 to 3 #4900
ci(deps): bump goreleaser/goreleaser-action from 2.8.1 to 2.9.1 #4899
ci(deps): bump peter-evans/create-pull-request from 3.12.1 to 3.14.0 #4897
ci(deps): bump actions/setup-node from 2 to 3 #4880
ci(deps): bump actions/checkout from 2 to 3 #4903
ci(deps): bump alpine from 3.14.3 to 3.15.0 #4559
ci(deps): bump golangci/golangci-lint-action from 2.5.2 to 3.1.0 #4898
ci(deps): bump docker/login-action from 1.12.0 to 1.14.1 #4904 #4855

👻 Maintenance

refactor(query): simplify docker_daemon_socket_is_exposed_to_containers k8s rule by @Churro in #4890
update(query): update "Trusted Microsoft Services Not Enabled" #4858
update(docs): updated roadmap #4868
update(queries): multi-staged aware for Docker queries #4877
delete(queries): delete "update" and "upgrade" Dockerfile queries #4878

💔 Deprecation

_Please be notified that KICS deprecated the availability of binaries in the GitHub releases assets as of version 1.5.2.
It is advised to update all systems (pipelines, integrations, etc.) to use KICS Docker Images.

Full Changelog: v1.5.2...v1.5.3

Don't miss a new kics release

NewReleases is sending notifications on new releases.