Cloudaware Vulnerability Scan Record Types
Cloudaware consolidates vulnerability findings in a single object and uses record types to distinguish source integrations. This guide lists the known record types for Cloudaware Vulnerability Scan objects.
- Object API Name:
CA10__CaNessusVulnerability__c - Distinction:
RecordType.DeveloperNameindicates the source integration - Active filter: add
CA10__disappearanceTime__c = NULLfor current records
Record Types and Source Lookups
| Record Type Label | Record Type Name | Linked Source Object(s) | Description |
|---|---|---|---|
| AWS ECS Container Vulnerability | caAwsEcsContainerVulnerability | CA10__CaAwsEcsContainer__c | Represents vulnerabilities discovered in AWS ECS containers; linked to the corresponding AWS ECS Container in Cloudaware. |
| AWS Inspector EC2 Instance Vulnerability | caAwsInspectorEc2InstanceVulnerability | CA10__CaAwsInstance__c | Represents AWS Inspector findings detected on EC2 instances; linked to the corresponding AWS Instance object. |
| AWS Inspector Lambda Function Vulnerability | caAwsInspectorLambdaFunctionVulnerability | CA10__CaAwsLambdaFunction__c | Represents AWS Inspector findings for Lambda functions; linked to the related AWS Lambda Function in Cloudaware. |
| Checkmarx One Vulnerability | caCheckmarxOneVulnerability | CA10CO__CaCheckmarxOneScan__c, CA10CO__CaCheckmarxOneProject__c | Represents vulnerabilities or findings imported from Checkmarx One; each record is related to the corresponding Checkmarx Scan or Project. |
| CloudAware AWS Instance Vulnerability | caCloudAwareNessusAwsInstanceVulnerability | CA10__CaAwsInstance__c | Represents vulnerabilities identified on AWS instances by Cloudaware internal scans or linked tools. |
| CloudAware Azure Active Directory Device Vulnerability | caCloudAwareNessusAzureActiveDirectoryDeviceVulnerability | CA10Z1__CaAzureActiveDirectoryDevice__c | Represents vulnerabilities found on Azure AD devices managed through Cloudaware discovery. |
| CloudAware Azure Virtual Machine Vulnerability | caCloudAwareNessusAzureVirtualMachineVulnerability | CA10__CaAzureVirtualMachine__c | Represents vulnerabilities discovered on Azure virtual machines; linked to the related Azure VM in Cloudaware. |
| CloudAware Google GCE Instance Vulnerability | caCloudAwareNessusGoogleGceInstanceVulnerability | CA10__CaGoogleGceInstance__c | Represents vulnerabilities detected on Google Compute Engine instances; linked to the corresponding GCE instance. |
| CloudAware JAMF Computer Vulnerability | caCloudAwareNessusJamfComputerVulnerability | CA10J__CaJamfComputer__c | Represents vulnerabilities identified on macOS devices managed by Jamf; linked to the corresponding Jamf Computer in Cloudaware. |
| CloudAware Oracle IAAS Instance Vulnerability | caCloudAwareNessusOracleIaasInstanceVulnerability | CA10O1__CaOracleIaasInstance__c | Represents vulnerabilities found on Oracle Cloud IAAS instances; linked to the related Oracle instance in Cloudaware. |
| CloudAware Physical Server Vulnerability | caCloudAwareNessusPhysicalServerVulnerability | CA10__CaPhysicalServer__c | Represents vulnerabilities identified on physical (on-premises) servers discovered by Cloudaware. |
| CloudAware URL Vulnerability | caCloudAwareNessusUrlVulnerability | CA10__CaUrl__c | Represents vulnerabilities detected during URL or web endpoint scans; linked to the corresponding URL record. |
| CloudAware vCenter Virtual Machine Vulnerability | caCloudAwareNessusVCenterVirtualMachineVulnerability | CA10V__CaVCenterVirtualMachine__c | Represents vulnerabilities detected on VMware vCenter virtual machines; linked to the related vCenter VM record. |
| Crowdstrike Vulnerability | caCrowdstrikeVulnerability | CA10CR__CaCrowdstrikeHost__c | Represents vulnerabilities discovered via CrowdStrike; linked to the related CrowdStrike Host in Cloudaware. |
| Customer Tenable SC Vulnerability | caCustomerTenableScVulnerability | CA10__CaAwsInstance__c, CA10__CaAzureVirtualMachine__c, CA10__CaPhysicalServer__c | Represents vulnerabilities imported from a customer’s Tenable.SC deployment. |
| Docker Image GCR Vulnerability | caDockerImageGcrVulnerability | CA10__CaGoogleGcrImage__c | Represents container image vulnerabilities identified in Google Container Registry (GCR); linked to the related GCR image. |
| GitLab Vulnerability | caGitLabVulnerability | CA10GL__CaGitLabProject__c | Represents code-scanning or dependency-scanning vulnerabilities originating from GitLab Projects. |
| Legacy Vulnerability | caLegacyVulneraiblity | CA10__CaAwsInstance__c | Represents vulnerabilities related to the Discovery org. |
| Orca Vulnerability On AWS Instance | caOrcaVulnerabilityOnAwsInstance | CA10__CaAwsInstance__c | Represents vulnerabilities detected by Orca Security on AWS EC2 instances; linked to the related AWS Instance. |
| Orca Vulnerability On Azure Scale Set Instance | caOrcaVulnerabilityOnAzureScaleSetInstance | CA10__CaAzureVmScaleSetInstance__c | Represents vulnerabilities found by Orca on Azure VM Scale Set instances; linked to the corresponding Azure Scale Set resource. |
| Orca Vulnerability On Azure Virtual Machine | caOrcaVulnerabilityOnAzureVirtualMachine | CA10__CaAzureVirtualMachine__c | Represents vulnerabilities discovered by Orca on Azure VMs; linked to the related Azure Virtual Machine. |
| Qualys Vulnerability | caQualysVulnerability | CA10__CaAwsInstance__c, CA10__CaAzureVirtualMachine__c, CA10__CaAzureVmScaleSetInstance__c, CA10__CaGoogleGceInstance__c, CA10V__CaVCenterVirtualMachine__c | Represents vulnerabilities imported from Qualys. |
| Rapid7 Vulnerability | caRapid7Vulnerability | CA10R7__CaInsightVmAsset__c | Represents vulnerabilities imported from Rapid7 InsightVM; linked to the related InsightVM asset. |
| Snyk Issue | caSnykIssue | CA10SK__CaSnykOrganization__c | Represents issues or vulnerabilities imported from Snyk; linked to the corresponding Snyk Organization. |
| Tenable Asset Vulnerability | caTenableAssetNessusVulnerability | CA10__CaAwsInstance__c, CA10__CaAzureVirtualMachine__c, CA10__CaAzureVmScaleSetInstance__c, CA10__CaGoogleGceInstance__c, CA10__CaPhysicalServer__c | Represents vulnerabilities found on assets scanned by Tenable.io or Tenable.sc. |
| Tenable Image Vulnerability | caTenableNessusVulnerability | CA10__CaDockerImage__c | Represents container image vulnerabilities discovered by Tenable. |
| Tenable SC Vulnerability | caTenableScVulnerability | CA10ND__CaNetworkDevice__c | Represents vulnerabilities imported from Tenable Security Center. |
note
Your Cloudaware org may include additional record types as new integrations are enabled. Filter by RecordType.DeveloperName when querying.
Records by Record Type
The following JSON blocks illustrate representative fields for each record type. Field values are placeholders and for demonstration only.
CrowdStrike (caCrowdstrikeVulnerability)
[
{
"Id": "a01XX0000001ABCQAY",
"Name": "CS: CVE-2024-0001 on host ip-10-0-1-23",
"RecordType.DeveloperName": "caCrowdstrikeVulnerability",
"CA10__caUuid__c": "4c2e3e7e-0cc8-4f9c-8a8c-111111111111",
"CA10__disappearanceTime__c": null,
"CA10CR__crowdstrikeHost__c": "a0HXX00000123HOST",
"CA10CR__crowdstrikeHost__r.Name": "i-0abc123def4567890",
"CVE__c": "CVE-2024-0001",
"Severity__c": "High"
},
{
"Id": "a01XX0000001ABDQAY",
"Name": "CS: Outdated OpenSSL package",
"RecordType.DeveloperName": "caCrowdstrikeVulnerability",
"CA10__caUuid__c": "9e5b8d3a-c8c9-4d2c-9f3a-222222222222",
"CA10__disappearanceTime__c": null,
"CA10CR__crowdstrikeHost__c": "a0HXX00000123HOST",
"CA10CR__crowdstrikeHost__r.Name": "ip-10-0-2-45.ec2.internal",
"CVE__c": null,
"Severity__c": "Critical"
}
]
Example query:
SELECT Id, Name, CA10__caUuid__c,
CA10CR__crowdstrikeHost__r.Name
FROM CA10__CaNessusVulnerability__c
WHERE CA10__disappearanceTime__c = NULL
AND RecordType.DeveloperName = 'caCrowdstrikeVulnerability'
AND CA10CR__crowdstrikeHost__c != NULL
ORDER BY CreatedDate DESC
Checkmarx One (caCheckmarxOneVulnerability)
[
{
"Id": "a01XX0000001ACEQAY",
"Name": "CX: Hardcoded secret in app-config.yaml",
"RecordType.DeveloperName": "caCheckmarxOneVulnerability",
"CA10__caUuid__c": "73b7b0b2-2dc4-4db6-b0c6-333333333333",
"CA10__disappearanceTime__c": null,
"CA10CO__CheckmarxOneAccount__c": "a1OXX0000000ACC",
"CA10CO__CheckmarxOneAccount__r.Name": "Checkmarx Prod",
"Project_Name__c": "payments-service",
"Severity__c": "Medium"
},
{
"Id": "a01XX0000001ACFQAY",
"Name": "CX: SQL Injection potential",
"RecordType.DeveloperName": "caCheckmarxOneVulnerability",
"CA10__caUuid__c": "b86e8a1e-4bdc-4d40-8d0f-444444444444",
"CA10__disappearanceTime__c": null,
"CA10CO__CheckmarxOneAccount__c": "a1OXX0000000ACC",
"CA10CO__CheckmarxOneAccount__r.Name": "Checkmarx Prod",
"Project_Name__c": "orders-api",
"Severity__c": "High"
}
]
Example query:
SELECT Id, Name, CA10__caUuid__c,
CA10CO__CheckmarxOneAccount__r.Name
FROM CA10__CaNessusVulnerability__c
WHERE CA10__disappearanceTime__c = NULL
AND RecordType.DeveloperName = 'caCheckmarxOneVulnerability'
AND CA10CO__CheckmarxOneAccount__c != NULL
ORDER BY CreatedDate DESC
GitLab (caGitLabVulnerability)
[
{
"Id": "a01XX0000001ADGQAY",
"Name": "GL: Dependency - lodash < 4.17.21",
"RecordType.DeveloperName": "caGitLabVulnerability",
"CA10__caUuid__c": "5f5e7b1a-9a90-41e7-8f3c-555555555555",
"CA10__disappearanceTime__c": null,
"CA10GL__GitLabProject__c": "a3PXX0000000PRJ",
"CA10GL__GitLabProject__r.Name": "frontend-app",
"Package_Name__c": "lodash",
"Severity__c": "Low"
},
{
"Id": "a01XX0000001ADHQAY",
"Name": "GL: SAST – Command injection",
"RecordType.DeveloperName": "caGitLabVulnerability",
"CA10__caUuid__c": "e2b2b1d4-6a7a-4c2e-9d23-666666666666",
"CA10__disappearanceTime__c": null,
"CA10GL__GitLabProject__c": "a3PXX0000000PRJ",
"CA10GL__GitLabProject__r.Name": "backend-api",
"Scanner__c": "SAST",
"Severity__c": "Critical"
}
]
Example query:
SELECT Id, Name, CA10__caUuid__c,
CA10GL__GitLabProject__r.Name
FROM CA10__CaNessusVulnerability__c
WHERE CA10__disappearanceTime__c = NULL
AND RecordType.DeveloperName = 'caGitLabVulnerability'
AND CA10GL__GitLabProject__c != NULL
ORDER BY CreatedDate DESC
Tips
- Always filter by the appropriate record type and ensure the corresponding lookup is not null.
- Use list views or
Describe metadatato confirm exact field API names in your Cloudaware org. - Join to ownership (e.g., application/OU) to drive routing and reporting.