Skip to content

fix(container): patch high Debian CVEs in SDK and API - #12805

Merged
pedrooot merged 1 commit into
v5.42from
backport/v5.42/pr-12804
Sep 14, 2026
Merged

pedrooot merged 1 commit into
v5.42from
backport/v5.42/pr-12804

Conversation

@prowler-bot

Copy link
Copy Markdown
Collaborator

Backport

This will backport the following commits from master to v5.42:

Questions ?

Please refer to the Backport tool documentation

@prowler-bot
prowler-bot requested review from a team as code owners September 14, 2026 09:02
@prowler-bot prowler-bot added the backport This PR contains a backport - Do not set this manually label Sep 14, 2026
@coderabbitai

coderabbitai Bot commented Sep 14, 2026

Copy link
Copy Markdown
Contributor

Important

Review skipped

Auto reviews are disabled on base/target branches other than the default branch.

Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: Organization UI

Review profile: ASSERTIVE

Plan: Advanced

Run ID: a0ef3745-8e89-436b-b639-c6b8378b1138

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

@github-actions

Copy link
Copy Markdown
Contributor

✅ All required changelog fragments are present.

@github-actions

Copy link
Copy Markdown
Contributor

No Conflicts

No conflict markers, and the branch merges cleanly into its base.

@github-actions

Copy link
Copy Markdown
Contributor

🔒 Container Security Scan

Image: prowler-api:c2c3e1b
Last scan: 2026-09-14 09:08:02 UTC

✅ No Vulnerabilities Detected

The container image passed all security checks. No known CVEs were found.

📋 Resources:

@github-actions

Copy link
Copy Markdown
Contributor

🔒 Container Security Scan

Image: prowler:c2c3e1b
Last scan: 2026-09-14 09:08:36 UTC

✅ No Vulnerabilities Detected

The container image passed all security checks. No known CVEs were found.

📋 Resources:

@codecov

codecov Bot commented Sep 14, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 94.71%. Comparing base (61bc385) to head (ab264fe).

Additional details and impacted files
@@            Coverage Diff             @@
##            v5.42   #12805      +/-   ##
==========================================
+ Coverage   90.76%   94.71%   +3.95%     
==========================================
  Files        2420      272    -2148     
  Lines      118134    42322   -75812     
==========================================
- Hits       107219    40085   -67134     
+ Misses      10915     2237    -8678     
Flag Coverage Δ
api 94.71% <ø> (ø)
prowler-py3.10-aws ?
prowler-py3.10-azure ?
prowler-py3.10-config ?
prowler-py3.10-e2enetworks ?
prowler-py3.10-external ?
prowler-py3.10-gcp ?
prowler-py3.10-github ?
prowler-py3.10-googleworkspace ?
prowler-py3.10-iac ?
prowler-py3.10-kubernetes ?
prowler-py3.10-lib ?
prowler-py3.10-linode ?
prowler-py3.10-m365 ?
prowler-py3.10-mongodbatlas ?
prowler-py3.10-nhn ?
prowler-py3.10-okta ?
prowler-py3.10-openstack ?
prowler-py3.10-oraclecloud ?
prowler-py3.10-scaleway ?
prowler-py3.10-stackit ?
prowler-py3.10-vercel ?
prowler-py3.11-aws ?
prowler-py3.11-azure ?
prowler-py3.11-config ?
prowler-py3.11-e2enetworks ?
prowler-py3.11-external ?
prowler-py3.11-gcp ?
prowler-py3.11-github ?
prowler-py3.11-googleworkspace ?
prowler-py3.11-iac ?
prowler-py3.11-kubernetes ?
prowler-py3.11-lib ?
prowler-py3.11-linode ?
prowler-py3.11-m365 ?
prowler-py3.11-mongodbatlas ?
prowler-py3.11-nhn ?
prowler-py3.11-okta ?
prowler-py3.11-openstack ?
prowler-py3.11-oraclecloud ?
prowler-py3.11-scaleway ?
prowler-py3.11-stackit ?
prowler-py3.11-vercel ?
prowler-py3.12-aws ?
prowler-py3.12-azure ?
prowler-py3.12-config ?
prowler-py3.12-e2enetworks ?
prowler-py3.12-external ?
prowler-py3.12-gcp ?
prowler-py3.12-github ?
prowler-py3.12-googleworkspace ?
prowler-py3.12-iac ?
prowler-py3.12-kubernetes ?
prowler-py3.12-lib ?
prowler-py3.12-linode ?
prowler-py3.12-m365 ?
prowler-py3.12-mongodbatlas ?
prowler-py3.12-nhn ?
prowler-py3.12-okta ?
prowler-py3.12-openstack ?
prowler-py3.12-oraclecloud ?
prowler-py3.12-scaleway ?
prowler-py3.12-stackit ?
prowler-py3.12-vercel ?
prowler-py3.13-aws ?
prowler-py3.13-azure ?
prowler-py3.13-config ?
prowler-py3.13-e2enetworks ?
prowler-py3.13-external ?
prowler-py3.13-gcp ?
prowler-py3.13-github ?
prowler-py3.13-googleworkspace ?
prowler-py3.13-iac ?
prowler-py3.13-kubernetes ?
prowler-py3.13-lib ?
prowler-py3.13-linode ?
prowler-py3.13-m365 ?
prowler-py3.13-mongodbatlas ?
prowler-py3.13-nhn ?
prowler-py3.13-okta ?
prowler-py3.13-openstack ?
prowler-py3.13-oraclecloud ?
prowler-py3.13-scaleway ?
prowler-py3.13-stackit ?
prowler-py3.13-vercel ?

Flags with carried forward coverage won't be shown. Click here to find out more.

Components Coverage Δ
prowler ∅ <ø> (∅)
api 94.71% <ø> (ø)
mcp_server ∅ <ø> (∅)
🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@github-actions

Copy link
Copy Markdown
Contributor

🔎 Container Security Scan (Grype)

Image: prowler-api:c2c3e1b
Last scan: 2026-09-14 09:10:11 UTC

✅ Nothing Blocking

No findings at critical or high severity.

Not blocking at this cutoff — medium: 24, low: 9, negligible: 1.

63 finding(s) excluded by .grype.yaml, each with a documented reason.


📋 Resources:

@github-actions

Copy link
Copy Markdown
Contributor

🔎 Container Security Scan (Grype)

Image: prowler:c2c3e1b
Last scan: 2026-09-14 09:10:43 UTC

✅ Nothing Blocking

No findings at critical or high severity.

Not blocking at this cutoff — medium: 20, low: 5, negligible: 1.

78 finding(s) excluded by .grype.yaml, each with a documented reason.


📋 Resources:

@pedrooot
pedrooot merged commit d4b64fc into v5.42 Sep 14, 2026
49 of 52 checks passed
@pedrooot
pedrooot deleted the backport/v5.42/pr-12804 branch September 14, 2026 09:25
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport This PR contains a backport - Do not set this manually component/api

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants