Palo Alto Networks Checkov by Prisma Cloud Sensitive Information Disclosure Vulnerability

Vulnerability

A vulnerability allowing the cleartext exposure of Prisma Cloud access keys in the output of Checkov by Prisma Cloud has been identified. This issue affects Checkov versions 3.2.0 prior to 3.2.449.

Impact

Exploitation of this vulnerability leads to the unintentional disclosure of sensitive access keys in Checkov's output, which could be uploaded to insecure locations.

Remediation

Users can upgrade to Checkov by Prisma Cloud version 3.2.449 or later. After upgrading, it is recommended to rotate all Prisma Cloud access keys used by Checkov.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
6.0
remediation
7.7
relevance
0.4
threat
0.0
urgency
5.7
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.