Skip to content

build(deps): bump checkov from 3.2.515 to 3.2.517 in /aws-cli#888

Merged
github-actions[bot] merged 1 commit intomainfrom
dependabot/pip/aws-cli/checkov-3.2.517
Apr 14, 2026
Merged

build(deps): bump checkov from 3.2.515 to 3.2.517 in /aws-cli#888
github-actions[bot] merged 1 commit intomainfrom
dependabot/pip/aws-cli/checkov-3.2.517

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 14, 2026

Bumps checkov from 3.2.515 to 3.2.517.

Release notes

Sourced from checkov's releases.

3.2.517

Bug Fix

  • general: add domain allowlist validation for Prisma Cloud and Bridgecrew API URLs - #7496
  • terraform: Harden tar and zip extraction - #7497
Changelog

Sourced from checkov's changelog.

3.2.517 - 2026-04-06

Bug Fix

  • general: add domain allowlist validation for Prisma Cloud and Bridgecrew API URLs - #7496
  • terraform: Harden tar and zip extraction - #7497

3.2.513 - 2026-03-27

Bug Fix

  • general: Log update - #7482

3.2.511 - 2026-03-26

Bug Fix

  • general: Prevent run failure invalid policy - #7476

3.2.510 - 2026-03-18

Bug Fix

  • terraform: support modern TLS security policies in CKV_AWS_206 - #7466
  • terraform: update CKV_AWS_339 supported EKS Kubernetes versions - #7465
  • terraform: update CKV_GCP_79 latest Postgres version from 17 to 18 - #7464

3.2.508 - 2026-03-08

Bug Fix

  • secrets: eliminate race condition in secrets scanner when running concurrently with other scanners - #7456

3.2.507 - 2026-03-05

Bug Fix

  • secrets: add _thread_safe_transient_settings( to secret runner - #7455

3.2.506 - 2026-02-23

Bug Fix

  • terraform: return inner module path when dest_dir already exists on Linux - #7436

3.2.505 - 2026-02-22

Feature

  • bicep: revert bump pycep to support better bicep syntax - #7446

... (truncated)

Commits
  • 69ad89a chore(general): move from pickle file to json (#7499)
  • bda01e0 chore(general): move from pickle file to json (#7499)
  • 79df50a Merge 1e675d53a677a9083a1c8cab1653f8ade529a78f into 17f5ea365bfda564ec6f2071f...
  • fde2b81 fix(general): add domain allowlist validation for Prisma Cloud and Bridgecrew...
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [checkov](https://github.com/bridgecrewio/checkov) from 3.2.515 to 3.2.517.
- [Release notes](https://github.com/bridgecrewio/checkov/releases)
- [Changelog](https://github.com/bridgecrewio/checkov/blob/main/CHANGELOG.md)
- [Commits](bridgecrewio/checkov@3.2.515...3.2.517)

---
updated-dependencies:
- dependency-name: checkov
  dependency-version: 3.2.517
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update python code labels Apr 14, 2026
@github-actions github-actions Bot added the build [Conventional Commits] Changes that affect the build system or external dependencies label Apr 14, 2026
@github-actions github-actions Bot enabled auto-merge (squash) April 14, 2026 13:46
@github-actions github-actions Bot merged commit 6f6155c into main Apr 14, 2026
52 checks passed
@github-actions github-actions Bot deleted the dependabot/pip/aws-cli/checkov-3.2.517 branch April 14, 2026 14:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

build [Conventional Commits] Changes that affect the build system or external dependencies dependencies Pull requests that update a dependency file python Pull requests that update python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants