SnowAlert icon indicating copy to clipboard operation
SnowAlert copied to clipboard

Security Analytics Using The Snowflake Data Warehouse

Results 136 SnowAlert issues
Sort by recently updated
recently updated
newest added

# Data Connectors - Adds NIC's to AzIC - Adds `s3.get_public_access_block` to AWSIC - Adds GreatHorn event ingestion - AWSIC has group and user inline policies collection added by @stevenliu-czi...

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [react-scripts](https://togithub.com/facebook/create-react-app) | devDependencies | major | [`^3.4.3` -> `^5.0.0`](https://renovatebot.com/diffs/npm/react-scripts/3.4.3/5.0.0) | By merging this...

security fix

## CVE-2019-9740 - Low Severity Vulnerability Vulnerable Library - urllib3-1.24.2-py2.py3-none-any.whl HTTP library with thread-safe connection pooling, file post, and more. Library home page: https://files.pythonhosted.org/packages/df/1c/59cca3abf96f991f2ec3131a4ffe72ae3d9ea1f5894abe8a9c5e3c77cfee/urllib3-1.24.2-py2.py3-none-any.whl Path to dependency file: /docs/requirements.txt Path...

security vulnerability

## CVE-2022-25858 - High Severity Vulnerability Vulnerable Library - terser-4.8.0.tgz JavaScript parser, mangler/compressor and beautifier toolkit for ES6+ Library home page: https://registry.npmjs.org/terser/-/terser-4.8.0.tgz Path to dependency file: /src/webui/frontend/package.json Path to vulnerable...

security vulnerability

Bumps [terser](https://github.com/terser/terser) from 4.8.0 to 4.8.1. Changelog Sourced from terser's changelog. v4.8.1 (backport) Security fix for RegExps that should not be evaluated (regexp DDOS) Commits See full diff in compare...

dependencies
javascript

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [moment](https://momentjs.com) ([source](https://togithub.com/moment/moment)) | dependencies | patch | [`2.29.0` -> `2.29.4`](https://renovatebot.com/diffs/npm/moment/2.29.0/2.29.4) | By merging...

security fix

## CVE-2022-31129 - High Severity Vulnerability Vulnerable Library - moment-2.29.1.tgz Parse, validate, manipulate, and display dates Library home page: https://registry.npmjs.org/moment/-/moment-2.29.1.tgz Path to dependency file: /src/webui/frontend/package.json Path to vulnerable library: /src/webui/frontend/node_modules/moment/package.json...

security vulnerability

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [husky](https://typicode.github.io/husky) ([source](https://togithub.com/typicode/husky)) | devDependencies | major | [`^4.3.0` -> `^5.0.0`](https://renovatebot.com/diffs/npm/husky/4.3.0/5.0.0) | By merging...

security fix

This PR contains the following updates: | Package | Update | Change | |---|---|---| | [PyYAML](https://pyyaml.org/) ([source](https://togithub.com/yaml/pyyaml)) | major | `==4.2b1` -> `==5.4` | By merging this PR, the below...

security fix