Palo Alto Networks Checkov by Prisma Cloud Sensitive Information Disclosure Vulnerability
Vulnerability
A vulnerability allowing the cleartext exposure of Prisma Cloud access keys in the output of Checkov by Prisma Cloud has been identified. This issue affects Checkov versions 3.2.0 prior to 3.2.449.
Impact
Exploitation of this vulnerability leads to the unintentional disclosure of sensitive access keys in Checkov's output, which could be uploaded to insecure locations.
Remediation
Users can upgrade to Checkov by Prisma Cloud version 3.2.449 or later. After upgrading, it is recommended to rotate all Prisma Cloud access keys used by Checkov.
Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
2.5exploitability
6.0remediation
7.7relevance
0.4threat
0.0urgency
5.7incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
