This release fixes issues for SREs watching stability and regressions.
✓ No known CVEs patched in this version
Topics
+12 more
ReleasePort's take
Light signalThe Prowler SDK release 5.27.1 fixes false positives in the s3_bucket_shadow_resource_vulnerability and sqlserver_tde_encrypted_with_cmk checks.
Why it matters: Update to version 5.27.1 immediately to eliminate misleading security findings that affect all monitored buckets and Azure SQL servers.
Summary
AI summaryFixed false findings in s3_bucket_shadow_resource_vulnerability and sqlserver_tde_encrypted_with_cmk checks.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Bugfix | Medium |
s3_bucket_shadow_resource_vulnerability no longer emits tautological PASS for every bucket; produces finding only when bucket name matches predictable service patterns. s3_bucket_shadow_resource_vulnerability no longer emits tautological PASS for every bucket; produces finding only when bucket name matches predictable service patterns. Source: llm_adapter@2026-05-21 Confidence: high |
— |
| Bugfix | Medium |
sqlserver_tde_encrypted_with_cmk check for Azure provider no longer reports false FAIL for SQL Servers correctly encrypted with a customer-managed key by excluding system master database from evaluation. sqlserver_tde_encrypted_with_cmk check for Azure provider no longer reports false FAIL for SQL Servers correctly encrypted with a customer-managed key by excluding system master database from evaluation. Source: llm_adapter@2026-05-21 Confidence: high |
— |
Full changelog
SDK
🐞 Fixed
s3_bucket_shadow_resource_vulnerabilityno longer emits a tautologicalPASSfinding for every bucket; a finding is now produced only when the bucket name matches one of the predictable service patterns (Glue, SageMaker, EMR, CodeStar) (#11220)sqlserver_tde_encrypted_with_cmkcheck for Azure provider no longer reports a falseFAILfor SQL Servers whose user databases are correctly encrypted with a customer-managed key, by excluding the systemmasterdatabase (always reports TDEDisabledand is not customer-controllable) from the TDE evaluation (#11233)
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About Prowler
Tool based on AWS-CLI commands for Amazon Web Services account security assessment and hardening.
Related context
Related tools
Beta — feedback welcome: [email protected]