CVE-2021-3035
EUVD-2021-2638720.04.2021, 04:15
An unsafe deserialization vulnerability in Bridgecrew Checkov by Prisma Cloud allows arbitrary code execution when processing a malicious terraform file. This issue impacts Checkov 2.0 versions earlier than Checkov 2.0.26. Checkov 1.0 versions are not impacted.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| paloaltonetworks | bridgecrew_checkov | 2.0.0 ≤ 𝑥 < 2.0.26 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration