v13.22.1
What's Changed
- 🐛 http-security: fix X-AspNet(Mvc)-Version checks never firing by @tas50 in #2736
- ✨ Use network v13.2.1 typed accessors in email, tls, dns, http policies by @tas50 in #2739
- 🔖 Bump policy bundle versions by @tas50 in #2740
- ✨ k8s-security: use typed container security-context fields by @tas50 in #2741
- ✨ Use typed os accessors in Linux auditd and SNMP checks by @tas50 in #2742
- ✨ Use typed docker.file run-command parsing in Dockerfile policies by @tas50 in #2743
- ✨ Use typed arista.eos resources in Arista EOS security checks by @tas50 in #2747
- ✨ Use typed digitalocean firewall ingress rules in firewall checks by @tas50 in #2746
- ✨ Use typed gcp org-policy and artifact-registry accessors by @tas50 in #2748
- ✨ Use typed azure diagnosticSetting enabledLogCategories by @tas50 in #2749
- ✨ Use typed macos.sharing.printerSharing in printer-sharing check by @tas50 in #2750
- 🧹 vault: link all backends via registry blank-import by @chris-rock in #2751
- ⭐ Add Mondoo Nutanix Security policy by @tas50 in #2715
- ⬆️ Bump policy versions by @tas50 in #2752
- 🧹 freebsd: use typed sudoers and inetd.config resources instead of raw parsing by @tas50 in #2753
- 🧹 freebsd: use typed inetd.config resource for service checks by @tas50 in #2754
- 🧹 github: use typed accessors for branch protection, webhook SSL, and Dependabot severity by @tas50 in #2756
- 🧹 m365: use typed Secure Score controls and unified audit log accessor by @tas50 in #2755
- 🧹 oci: use typed legacyImdsEndpointsDisabled for IMDSv2 check by @tas50 in #2760
- 🧹 gcp: use typed accessors for bucket, DNS, GKE RBAC, and Vertex AI job by @tas50 in #2759
- 🧹 okta: use typed security notification email flags on organization by @tas50 in #2761
- 🧹 vsphere: use typed ESXi host hardening settings in esxi policy by @tas50 in #2766
- 🧹 Bump mql to v13.22.1 by @mondoo-mergebot[bot] in #2767
Full Changelog: v13.22.0...v13.22.1