Release Summary v1.2.24
This release delivers a comprehensive set of enhancements, new features, and critical security updates across multiple services. Key highlights include expanded Microsoft 365 (M365) scanning capabilities, improved alerting and inventory management, numerous dependency upgrades to address vulnerabilities, and user interface improvements for better usability and visibility.
helmChart
- 🔧 Merged latest development changes.
- 🔧 Improved node-level Prometheus alerting integration for Slack notifications.
python-algo
- 🔧 Merged latest development changes.
- 🔧 Disabled the saving of relationship delta documents to the
deltascollection by commenting out related code, preserving it for potential future re-enablement. - 🔧 Updated
.dockerignoreto exclude.cursorfiles.
aws-scanner
- 🔧 Merged latest development changes.
- 🔼 Upgraded
@aws-sdk/client-acm-pcafrom 3.1017.0 to 3.1018.0, including endpoint updates, support for new instance types, and additional features across several AWS SDK clients. - 🔼 Upgraded
@aws-sdk/client-accountfrom 3.1017.0 to 3.1018.0, inheriting the same AWS SDK improvements. - 🔼 Upgraded
@aws-sdk/client-amplifyfrom 3.1017.0 to 3.1018.0, inheriting the same AWS SDK improvements.
chronom-backend
- 🔧 Merged latest development changes.
- ✨ Added
GET /scanStatus/m365/:tenantIdendpoint to provide M365 scan progress, including user counts and tenant name, with rate limiting and improved queue handling. - 🔧 Added NAT Gateway metrics scanning.
- 🔼 Updated dependencies, including
axios, to enhance security. - ✨ Added
triggerM365Scanendpoint to the management controller, enabling initiation of M365 scans for specified organizations and tenants with robust validation and message queuing.
chronom-client
- 🔧 Merged latest development changes.
- ✨ Enhanced M365 Directory with a range filter for alert counts and user type badges in the Users list.
- 🔧 Improved documentation and table column alignment for better readability.
- ✨ Added M365 scan trigger functionality for SuperAdmin users in the AzureAccounts component, including user feedback with notifications.
policy-service
- 🔧 Merged latest development changes.
- 🔼 Upgraded
eslintfrom 9.39.4 to 10.0.0 to address a high-severity infinite loop vulnerability. - 🔼 Upgraded
axiosfrom 1.14.0 to 1.15.0 to resolve critical and high-severity vulnerabilities.
typesense-mongodb-sync
- 🔧 Merged latest development changes.
- 🔼 Updated Typesense version in shipyard.
- 🔧 Improved M365 inventory by expanding schema, updating dependencies, and adding a fallback value for
lastSignIntimestamp.
azure-scanner
- 🔧 Merged latest development changes.
- 🐛 Fixed failure to retrieve metrics on storage accounts.
usage-reporting-service
- 🔼 Upgraded
axiosfrom 1.13.6 to 1.15.0 to resolve a high-severity HTTP response splitting vulnerability.
dedicated-scanner
- 🔧 Merged latest development changes.
- 🔼 Upgraded multiple AWS SDK dependencies:
@aws-sdk/client-cost-explorerfrom 3.1013.0 to 3.1017.0@aws-sdk/client-stsfrom 3.1013.0 to 3.1017.0@aws-sdk/client-s3from 3.1010.0 to 3.1017.0@aws-sdk/client-secrets-managerfrom 3.1013.0 to 3.1016.0
- 🔼 Upgraded
typescript-eslintfrom 8.57.1 to 8.57.2.
anomaly-detection
- 🔧 Merged latest development changes.
- 🐛 Updated dependencies to resolve Snyk-reported vulnerabilities.
- 🐛 Refactored resource ID handling in
CostExplorerHandlerto use a new delimiter for improved clarity and updated related model utilities.
be-ms-alert
- 🔧 Merged latest development changes.
- 🔧 Updated package versions for security.
- 🔧 Synchronized
policyResultsCountin the Typesensem365Inventorycollection when resolving or unresolving policy results forAzure/UserorAzure/Groupresources. - 🔧 Added helper functions for inventory synchronization.
be-ms-inventory
- 🔧 Merged latest development changes.
- 🐛 Fixed
policyNamefilter to ensure Typesense join filters return all relevant unresolved policy results, with post-query refetch for accuracy. - 🐛 Corrected facet count calculation for
policyNamewhen filters are applied, ensuring accurate per-filter sub-query counts. - 🔧 Enhanced M365 directory with user type and policy name faceting, alert count statistics, and a fallback for
lastSignInTimestamp. Updated dependencies and timeline enrichment service.
Additional Improvements
No unclassified changes in this release.
Disclaimer: The release notes are generated by OpenAI ChatGPT and may not be accurate. Please contact our support team for more information.
2026-Apr-19T10:43:13