Skip to content

build(deps): bump checkov from 3.2.515 to 3.2.517 in /aws-cli#888

Merged
github-actions[bot] merged 1 commit into
mainfrom
dependabot/pip/aws-cli/checkov-3.2.517
Apr 14, 2026
Merged

build(deps): bump checkov from 3.2.515 to 3.2.517 in /aws-cli#888
github-actions[bot] merged 1 commit into
mainfrom
dependabot/pip/aws-cli/checkov-3.2.517

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Apr 14, 2026

Copy link
Copy Markdown
Contributor

Bumps checkov from 3.2.515 to 3.2.517.

Release notes

Sourced from checkov's releases.

3.2.517

Bug Fix

  • general: add domain allowlist validation for Prisma Cloud and Bridgecrew API URLs - #7496
  • terraform: Harden tar and zip extraction - #7497
Changelog

Sourced from checkov's changelog.

3.2.517 - 2026-04-06

Bug Fix

  • general: add domain allowlist validation for Prisma Cloud and Bridgecrew API URLs - #7496
  • terraform: Harden tar and zip extraction - #7497

3.2.513 - 2026-03-27

Bug Fix

  • general: Log update - #7482

3.2.511 - 2026-03-26

Bug Fix

  • general: Prevent run failure invalid policy - #7476

3.2.510 - 2026-03-18

Bug Fix

  • terraform: support modern TLS security policies in CKV_AWS_206 - #7466
  • terraform: update CKV_AWS_339 supported EKS Kubernetes versions - #7465
  • terraform: update CKV_GCP_79 latest Postgres version from 17 to 18 - #7464

3.2.508 - 2026-03-08

Bug Fix

  • secrets: eliminate race condition in secrets scanner when running concurrently with other scanners - #7456

3.2.507 - 2026-03-05

Bug Fix

  • secrets: add _thread_safe_transient_settings( to secret runner - #7455

3.2.506 - 2026-02-23

Bug Fix

  • terraform: return inner module path when dest_dir already exists on Linux - #7436

3.2.505 - 2026-02-22

Feature

  • bicep: revert bump pycep to support better bicep syntax - #7446

... (truncated)

Commits
  • 69ad89a chore(general): move from pickle file to json (#7499)
  • bda01e0 chore(general): move from pickle file to json (#7499)
  • 79df50a Merge 1e675d53a677a9083a1c8cab1653f8ade529a78f into 17f5ea365bfda564ec6f2071f...
  • fde2b81 fix(general): add domain allowlist validation for Prisma Cloud and Bridgecrew...
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [checkov](https://github.com/bridgecrewio/checkov) from 3.2.515 to 3.2.517.
- [Release notes](https://github.com/bridgecrewio/checkov/releases)
- [Changelog](https://github.com/bridgecrewio/checkov/blob/main/CHANGELOG.md)
- [Commits](bridgecrewio/checkov@3.2.515...3.2.517)

---
updated-dependencies:
- dependency-name: checkov
  dependency-version: 3.2.517
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update python code labels Apr 14, 2026
@github-actions github-actions Bot added the build [Conventional Commits] Changes that affect the build system or external dependencies label Apr 14, 2026
@github-actions github-actions Bot enabled auto-merge (squash) April 14, 2026 13:46
@github-actions github-actions Bot merged commit 6f6155c into main Apr 14, 2026
52 checks passed
@github-actions github-actions Bot deleted the dependabot/pip/aws-cli/checkov-3.2.517 branch April 14, 2026 14:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

build [Conventional Commits] Changes that affect the build system or external dependencies dependencies Pull requests that update a dependency file python Pull requests that update python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants