This release fixes issues for SREs watching stability and regressions.
✓ No known CVEs patched in this version
Topics
+12 more
Summary
AI summaryUpdates 🐞 Fixed, https://github.com/prowler-cloud/prowler/pull/11546, and UI across a mixed release.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Bugfix | Medium |
Threat Map no longer shows an empty map for accounts with only Okta or Google Workspace scans. Threat Map no longer shows an empty map for accounts with only Okta or Google Workspace scans. Source: llm_adapter@2026-06-12 Confidence: high |
— |
| Bugfix | Medium |
Compliance attributes requests now pass the selected scan, loading correct check IDs and findings for multi-provider frameworks. Compliance attributes requests now pass the selected scan, loading correct check IDs and findings for multi-provider frameworks. Source: llm_adapter@2026-06-12 Confidence: high |
— |
| Bugfix | Medium |
Attack Paths `drop_subgraph` now deletes relationships before nodes, reducing memory usage on Neo4j for dense provider graphs. Attack Paths `drop_subgraph` now deletes relationships before nodes, reducing memory usage on Neo4j for dense provider graphs. Source: llm_adapter@2026-06-12 Confidence: high |
— |
| Bugfix | Medium |
OCI scans now use API key credentials with the configured region instead of falling back to `~/.oci/config`. OCI scans now use API key credentials with the configured region instead of falling back to `~/.oci/config`. Source: llm_adapter@2026-06-12 Confidence: high |
— |
Full changelog
UI
🐞 Fixed
- Threat Map no longer shows an empty map for accounts that only have Okta or Google Workspace scans (#11542)
- Compliance attributes requests now pass the selected scan, so multi-provider universal frameworks (e.g. CSA CCM) load the check IDs of the scan's provider and Azure/GCP requirement details show their findings instead of appearing empty (#11546)
API
🐞 Fixed
compliance-overviews/attributesnow resolves the provider from the scan, so multi-provider universal frameworks (e.g. CSA CCM) return the check IDs of the scan's provider and Azure/GCP requirement details show their findings instead of appearing empty (#11546)- Attack Paths:
drop_subgraphnow deletes relationships first and then nodes in batches, using less memory on Neo4j when clearing a dense provider graph (#11557) - OCI scans now use API key credentials with the configured region instead of falling back to
/home/prowler/.oci/config(#11558)
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About Prowler
Tool based on AWS-CLI commands for Amazon Web Services account security assessment and hardening.
Beta — feedback welcome: [email protected]