Skip to main content

Release Summary v1.2.24

This release delivers a comprehensive set of enhancements, new features, and critical security updates across multiple services. Key highlights include expanded Microsoft 365 (M365) scanning capabilities, improved alerting and inventory management, numerous dependency upgrades to address vulnerabilities, and user interface improvements for better usability and visibility.


helmChart

  • 🔧 Merged latest development changes.
  • 🔧 Improved node-level Prometheus alerting integration for Slack notifications.

python-algo

  • 🔧 Merged latest development changes.
  • 🔧 Disabled the saving of relationship delta documents to the deltas collection by commenting out related code, preserving it for potential future re-enablement.
  • 🔧 Updated .dockerignore to exclude .cursor files.

aws-scanner

  • 🔧 Merged latest development changes.
  • 🔼 Upgraded @aws-sdk/client-acm-pca from 3.1017.0 to 3.1018.0, including endpoint updates, support for new instance types, and additional features across several AWS SDK clients.
  • 🔼 Upgraded @aws-sdk/client-account from 3.1017.0 to 3.1018.0, inheriting the same AWS SDK improvements.
  • 🔼 Upgraded @aws-sdk/client-amplify from 3.1017.0 to 3.1018.0, inheriting the same AWS SDK improvements.

chronom-backend

  • 🔧 Merged latest development changes.
  • Added GET /scanStatus/m365/:tenantId endpoint to provide M365 scan progress, including user counts and tenant name, with rate limiting and improved queue handling.
  • 🔧 Added NAT Gateway metrics scanning.
  • 🔼 Updated dependencies, including axios, to enhance security.
  • Added triggerM365Scan endpoint to the management controller, enabling initiation of M365 scans for specified organizations and tenants with robust validation and message queuing.

chronom-client

  • 🔧 Merged latest development changes.
  • Enhanced M365 Directory with a range filter for alert counts and user type badges in the Users list.
  • 🔧 Improved documentation and table column alignment for better readability.
  • Added M365 scan trigger functionality for SuperAdmin users in the AzureAccounts component, including user feedback with notifications.

policy-service

  • 🔧 Merged latest development changes.
  • 🔼 Upgraded eslint from 9.39.4 to 10.0.0 to address a high-severity infinite loop vulnerability.
  • 🔼 Upgraded axios from 1.14.0 to 1.15.0 to resolve critical and high-severity vulnerabilities.

typesense-mongodb-sync

  • 🔧 Merged latest development changes.
  • 🔼 Updated Typesense version in shipyard.
  • 🔧 Improved M365 inventory by expanding schema, updating dependencies, and adding a fallback value for lastSignIntimestamp.

azure-scanner

  • 🔧 Merged latest development changes.
  • 🐛 Fixed failure to retrieve metrics on storage accounts.

usage-reporting-service

  • 🔼 Upgraded axios from 1.13.6 to 1.15.0 to resolve a high-severity HTTP response splitting vulnerability.

dedicated-scanner

  • 🔧 Merged latest development changes.
  • 🔼 Upgraded multiple AWS SDK dependencies:
    • @aws-sdk/client-cost-explorer from 3.1013.0 to 3.1017.0
    • @aws-sdk/client-sts from 3.1013.0 to 3.1017.0
    • @aws-sdk/client-s3 from 3.1010.0 to 3.1017.0
    • @aws-sdk/client-secrets-manager from 3.1013.0 to 3.1016.0
  • 🔼 Upgraded typescript-eslint from 8.57.1 to 8.57.2.

anomaly-detection

  • 🔧 Merged latest development changes.
  • 🐛 Updated dependencies to resolve Snyk-reported vulnerabilities.
  • 🐛 Refactored resource ID handling in CostExplorerHandler to use a new delimiter for improved clarity and updated related model utilities.

be-ms-alert

  • 🔧 Merged latest development changes.
  • 🔧 Updated package versions for security.
  • 🔧 Synchronized policyResultsCount in the Typesense m365Inventory collection when resolving or unresolving policy results for Azure/User or Azure/Group resources.
  • 🔧 Added helper functions for inventory synchronization.

be-ms-inventory

  • 🔧 Merged latest development changes.
  • 🐛 Fixed policyName filter to ensure Typesense join filters return all relevant unresolved policy results, with post-query refetch for accuracy.
  • 🐛 Corrected facet count calculation for policyName when filters are applied, ensuring accurate per-filter sub-query counts.
  • 🔧 Enhanced M365 directory with user type and policy name faceting, alert count statistics, and a fallback for lastSignInTimestamp. Updated dependencies and timeline enrichment service.

Additional Improvements

No unclassified changes in this release.



Disclaimer: The release notes are generated by OpenAI ChatGPT and may not be accurate. Please contact our support team for more information.

2026-Apr-19T10:43:13