github bridgecrewio/checkov 2.2.139

latest releases: 3.2.74, 3.2.73, 3.2.72...
16 months ago

Feature

  • graph: Added not_within attribute solver for graph checks - #4041
  • kubernetes: Add CKV2_K8S_2 graph check for potential privilege escalation in nodes/proxy or pods/exec with create permissions - #4034
  • kubernetes: Add CKV2_K8S_3 no impersonate permissions for ServiceAccount/Node - #4037
  • kubernetes: Added CKV2_K8S_4 check to not allow modifying of services/status - #4038
  • kubernetes: Added CKV2_K8S_5 check that no service account or node can read all secrets - #4042
  • secrets: Accepting json reports from bucket in secrets_omitter - #4039
  • terraform: add CKV NCP rules about Route Table Association - #3856

Bug Fix

  • kubernetes: Corrected list format for yaml files in new k8s graph check tests - #4035
  • secrets: custom secret add support for value str and not only list - #4024
  • terraform: Fix in dot separator in the dynamic argument - #4036

Don't miss a new checkov release

NewReleases is sending notifications on new releases.