cloudiscovery (disabled)

Install command:
brew install cloudiscovery

Help you discover resources in the cloud environment

https://github.com/Cloud-Architects/cloudiscovery

License: Apache-2.0

Development: Pull requests

Formula JSON API: /api/formula/cloudiscovery.json

Formula code: cloudiscovery.rb on GitHub

Bottle (binary package) installation support provided for:

macOS on
Apple Silicon
tahoe ✅
sequoia ✅
sonoma ✅
ventura ✅
macOS on
Intel
sonoma ✅
ventura ✅
Linux ARM64 ✅
x86_64 ✅

Current versions:

stable ✅ 2.4.4

Revision: 4

Depends on:

libyaml 0.2.5 YAML Parser
python@3.12 3.12.15 Interpreted, interactive, object-oriented programming language

Known vulnerabilities in the current version:

GHSA-h5c8-rqwp-cp95 (medium) Jinja vulnerable to HTML attribute injection when passing user input as keys to xmlattr filter
GHSA-h75v-3vvj-5mfj (medium) Jinja vulnerable to HTML attribute injection when passing user input as keys to xmlattr filter
GHSA-q2x7-8rv6-6q7h (high) Jinja has a sandbox breakout through indirect reference to format method
GHSA-cpwx-vrp4-4pq7 Jinja2 vulnerable to sandbox breakout through attr filter selecting format method
GHSA-gm62-xv2j-4w53 urllib3 allows an unbounded number of links in the decompression chain
GHSA-2xpw-w6gg-jr37 urllib3 streaming API improperly handles highly compressed data
GHSA-w853-jp5j-5j7f (medium) filelock has a TOCTOU race condition which allows symlink attacks during lock file creation
GHSA-w8v5-vhqr-4h9v DiskCache has unsafe pickle deserialization
PYSEC-2026-4011 virtualenv: Downloaded seed wheels (pip/setuptools) are not integrity-checked before use
PYSEC-2026-4012 virtualenv writes prompt values into pyvenv.cfg without sanitizing line boundaries, allowing conf...
GHSA-38jv-5279-wg99 (high) Decompression-bomb safeguards bypassed when following HTTP redirects (streaming API)
GHSA-qmgc-5h2g-mvrw (medium) filelock Time-of-Check-Time-of-Use (TOCTOU) Symlink Vulnerability in SoftFileLock
GHSA-597g-3phw-6986 (medium) virtualenv Has TOCTOU Vulnerabilities in Directory Creation
GHSA-qccp-gfcp-xxvc (medium) urllib3: Sensitive headers forwarded across origins in proxied low-level redirects
GHSA-8988-9cw3-xx77 urllib3: HTTPS proxy TLS configuration may be ignored or overridden
GHSA-vxq7-64xx-v4gw urllib3: HTTPResponse.stream()/read_chunked() buffers an unbounded chunk-size line into memory

Data from Homebrew/advisory-database. Run brew vulns cloudiscovery for a live check.

Analytics:

30 days90 days365 days
Installs0117
Installs on Request0117
Build Errors0