Skip to main content

Cloudaware Vulnerability Scan Record Types

Cloudaware consolidates vulnerability findings in a single object and uses record types to distinguish source integrations. This guide lists the known record types for Cloudaware Vulnerability Scan objects.

  • Object API Name: CA10__CaNessusVulnerability__c
  • Distinction: RecordType.DeveloperName indicates the source integration
  • Active filter: add CA10__disappearanceTime__c = NULL for current records

Record Types and Source Lookups

Record Type LabelRecord Type NameLinked Source Object(s)Description
AWS ECS Container VulnerabilitycaAwsEcsContainerVulnerabilityCA10__CaAwsEcsContainer__cRepresents vulnerabilities discovered in AWS ECS containers; linked to the corresponding AWS ECS Container in Cloudaware.
AWS Inspector EC2 Instance VulnerabilitycaAwsInspectorEc2InstanceVulnerabilityCA10__CaAwsInstance__cRepresents AWS Inspector findings detected on EC2 instances; linked to the corresponding AWS Instance object.
AWS Inspector Lambda Function VulnerabilitycaAwsInspectorLambdaFunctionVulnerabilityCA10__CaAwsLambdaFunction__cRepresents AWS Inspector findings for Lambda functions; linked to the related AWS Lambda Function in Cloudaware.
Checkmarx One VulnerabilitycaCheckmarxOneVulnerabilityCA10CO__CaCheckmarxOneScan__c, CA10CO__CaCheckmarxOneProject__cRepresents vulnerabilities or findings imported from Checkmarx One; each record is related to the corresponding Checkmarx Scan or Project.
CloudAware AWS Instance VulnerabilitycaCloudAwareNessusAwsInstanceVulnerabilityCA10__CaAwsInstance__cRepresents vulnerabilities identified on AWS instances by Cloudaware internal scans or linked tools.
CloudAware Azure Active Directory Device VulnerabilitycaCloudAwareNessusAzureActiveDirectoryDeviceVulnerabilityCA10Z1__CaAzureActiveDirectoryDevice__cRepresents vulnerabilities found on Azure AD devices managed through Cloudaware discovery.
CloudAware Azure Virtual Machine VulnerabilitycaCloudAwareNessusAzureVirtualMachineVulnerabilityCA10__CaAzureVirtualMachine__cRepresents vulnerabilities discovered on Azure virtual machines; linked to the related Azure VM in Cloudaware.
CloudAware Google GCE Instance VulnerabilitycaCloudAwareNessusGoogleGceInstanceVulnerabilityCA10__CaGoogleGceInstance__cRepresents vulnerabilities detected on Google Compute Engine instances; linked to the corresponding GCE instance.
CloudAware JAMF Computer VulnerabilitycaCloudAwareNessusJamfComputerVulnerabilityCA10J__CaJamfComputer__cRepresents vulnerabilities identified on macOS devices managed by Jamf; linked to the corresponding Jamf Computer in Cloudaware.
CloudAware Oracle IAAS Instance VulnerabilitycaCloudAwareNessusOracleIaasInstanceVulnerabilityCA10O1__CaOracleIaasInstance__cRepresents vulnerabilities found on Oracle Cloud IAAS instances; linked to the related Oracle instance in Cloudaware.
CloudAware Physical Server VulnerabilitycaCloudAwareNessusPhysicalServerVulnerabilityCA10__CaPhysicalServer__cRepresents vulnerabilities identified on physical (on-premises) servers discovered by Cloudaware.
CloudAware URL VulnerabilitycaCloudAwareNessusUrlVulnerabilityCA10__CaUrl__cRepresents vulnerabilities detected during URL or web endpoint scans; linked to the corresponding URL record.
CloudAware vCenter Virtual Machine VulnerabilitycaCloudAwareNessusVCenterVirtualMachineVulnerabilityCA10V__CaVCenterVirtualMachine__cRepresents vulnerabilities detected on VMware vCenter virtual machines; linked to the related vCenter VM record.
Crowdstrike VulnerabilitycaCrowdstrikeVulnerabilityCA10CR__CaCrowdstrikeHost__cRepresents vulnerabilities discovered via CrowdStrike; linked to the related CrowdStrike Host in Cloudaware.
Customer Tenable SC VulnerabilitycaCustomerTenableScVulnerabilityCA10__CaAwsInstance__c, CA10__CaAzureVirtualMachine__c, CA10__CaPhysicalServer__cRepresents vulnerabilities imported from a customer’s Tenable.SC deployment.
Docker Image GCR VulnerabilitycaDockerImageGcrVulnerabilityCA10__CaGoogleGcrImage__cRepresents container image vulnerabilities identified in Google Container Registry (GCR); linked to the related GCR image.
GitLab VulnerabilitycaGitLabVulnerabilityCA10GL__CaGitLabProject__cRepresents code-scanning or dependency-scanning vulnerabilities originating from GitLab Projects.
Legacy VulnerabilitycaLegacyVulneraiblityCA10__CaAwsInstance__cRepresents vulnerabilities related to the Discovery org.
Orca Vulnerability On AWS InstancecaOrcaVulnerabilityOnAwsInstanceCA10__CaAwsInstance__cRepresents vulnerabilities detected by Orca Security on AWS EC2 instances; linked to the related AWS Instance.
Orca Vulnerability On Azure Scale Set InstancecaOrcaVulnerabilityOnAzureScaleSetInstanceCA10__CaAzureVmScaleSetInstance__cRepresents vulnerabilities found by Orca on Azure VM Scale Set instances; linked to the corresponding Azure Scale Set resource.
Orca Vulnerability On Azure Virtual MachinecaOrcaVulnerabilityOnAzureVirtualMachineCA10__CaAzureVirtualMachine__cRepresents vulnerabilities discovered by Orca on Azure VMs; linked to the related Azure Virtual Machine.
Qualys VulnerabilitycaQualysVulnerabilityCA10__CaAwsInstance__c, CA10__CaAzureVirtualMachine__c, CA10__CaAzureVmScaleSetInstance__c, CA10__CaGoogleGceInstance__c, CA10V__CaVCenterVirtualMachine__cRepresents vulnerabilities imported from Qualys.
Rapid7 VulnerabilitycaRapid7VulnerabilityCA10R7__CaInsightVmAsset__cRepresents vulnerabilities imported from Rapid7 InsightVM; linked to the related InsightVM asset.
Snyk IssuecaSnykIssueCA10SK__CaSnykOrganization__cRepresents issues or vulnerabilities imported from Snyk; linked to the corresponding Snyk Organization.
Tenable Asset VulnerabilitycaTenableAssetNessusVulnerabilityCA10__CaAwsInstance__c, CA10__CaAzureVirtualMachine__c, CA10__CaAzureVmScaleSetInstance__c, CA10__CaGoogleGceInstance__c, CA10__CaPhysicalServer__cRepresents vulnerabilities found on assets scanned by Tenable.io or Tenable.sc.
Tenable Image VulnerabilitycaTenableNessusVulnerabilityCA10__CaDockerImage__cRepresents container image vulnerabilities discovered by Tenable.
Tenable SC VulnerabilitycaTenableScVulnerabilityCA10ND__CaNetworkDevice__cRepresents vulnerabilities imported from Tenable Security Center.
note

Your Cloudaware org may include additional record types as new integrations are enabled. Filter by RecordType.DeveloperName when querying.

Records by Record Type

The following JSON blocks illustrate representative fields for each record type. Field values are placeholders and for demonstration only.

CrowdStrike (caCrowdstrikeVulnerability)

[
{
"Id": "a01XX0000001ABCQAY",
"Name": "CS: CVE-2024-0001 on host ip-10-0-1-23",
"RecordType.DeveloperName": "caCrowdstrikeVulnerability",
"CA10__caUuid__c": "4c2e3e7e-0cc8-4f9c-8a8c-111111111111",
"CA10__disappearanceTime__c": null,
"CA10CR__crowdstrikeHost__c": "a0HXX00000123HOST",
"CA10CR__crowdstrikeHost__r.Name": "i-0abc123def4567890",
"CVE__c": "CVE-2024-0001",
"Severity__c": "High"
},
{
"Id": "a01XX0000001ABDQAY",
"Name": "CS: Outdated OpenSSL package",
"RecordType.DeveloperName": "caCrowdstrikeVulnerability",
"CA10__caUuid__c": "9e5b8d3a-c8c9-4d2c-9f3a-222222222222",
"CA10__disappearanceTime__c": null,
"CA10CR__crowdstrikeHost__c": "a0HXX00000123HOST",
"CA10CR__crowdstrikeHost__r.Name": "ip-10-0-2-45.ec2.internal",
"CVE__c": null,
"Severity__c": "Critical"
}
]

Example query:

SELECT Id, Name, CA10__caUuid__c,
CA10CR__crowdstrikeHost__r.Name
FROM CA10__CaNessusVulnerability__c
WHERE CA10__disappearanceTime__c = NULL
AND RecordType.DeveloperName = 'caCrowdstrikeVulnerability'
AND CA10CR__crowdstrikeHost__c != NULL
ORDER BY CreatedDate DESC

Checkmarx One (caCheckmarxOneVulnerability)

[
{
"Id": "a01XX0000001ACEQAY",
"Name": "CX: Hardcoded secret in app-config.yaml",
"RecordType.DeveloperName": "caCheckmarxOneVulnerability",
"CA10__caUuid__c": "73b7b0b2-2dc4-4db6-b0c6-333333333333",
"CA10__disappearanceTime__c": null,
"CA10CO__CheckmarxOneAccount__c": "a1OXX0000000ACC",
"CA10CO__CheckmarxOneAccount__r.Name": "Checkmarx Prod",
"Project_Name__c": "payments-service",
"Severity__c": "Medium"
},
{
"Id": "a01XX0000001ACFQAY",
"Name": "CX: SQL Injection potential",
"RecordType.DeveloperName": "caCheckmarxOneVulnerability",
"CA10__caUuid__c": "b86e8a1e-4bdc-4d40-8d0f-444444444444",
"CA10__disappearanceTime__c": null,
"CA10CO__CheckmarxOneAccount__c": "a1OXX0000000ACC",
"CA10CO__CheckmarxOneAccount__r.Name": "Checkmarx Prod",
"Project_Name__c": "orders-api",
"Severity__c": "High"
}
]

Example query:

SELECT Id, Name, CA10__caUuid__c,
CA10CO__CheckmarxOneAccount__r.Name
FROM CA10__CaNessusVulnerability__c
WHERE CA10__disappearanceTime__c = NULL
AND RecordType.DeveloperName = 'caCheckmarxOneVulnerability'
AND CA10CO__CheckmarxOneAccount__c != NULL
ORDER BY CreatedDate DESC

GitLab (caGitLabVulnerability)

[
{
"Id": "a01XX0000001ADGQAY",
"Name": "GL: Dependency - lodash < 4.17.21",
"RecordType.DeveloperName": "caGitLabVulnerability",
"CA10__caUuid__c": "5f5e7b1a-9a90-41e7-8f3c-555555555555",
"CA10__disappearanceTime__c": null,
"CA10GL__GitLabProject__c": "a3PXX0000000PRJ",
"CA10GL__GitLabProject__r.Name": "frontend-app",
"Package_Name__c": "lodash",
"Severity__c": "Low"
},
{
"Id": "a01XX0000001ADHQAY",
"Name": "GL: SAST – Command injection",
"RecordType.DeveloperName": "caGitLabVulnerability",
"CA10__caUuid__c": "e2b2b1d4-6a7a-4c2e-9d23-666666666666",
"CA10__disappearanceTime__c": null,
"CA10GL__GitLabProject__c": "a3PXX0000000PRJ",
"CA10GL__GitLabProject__r.Name": "backend-api",
"Scanner__c": "SAST",
"Severity__c": "Critical"
}
]

Example query:

SELECT Id, Name, CA10__caUuid__c,
CA10GL__GitLabProject__r.Name
FROM CA10__CaNessusVulnerability__c
WHERE CA10__disappearanceTime__c = NULL
AND RecordType.DeveloperName = 'caGitLabVulnerability'
AND CA10GL__GitLabProject__c != NULL
ORDER BY CreatedDate DESC

Tips

  • Always filter by the appropriate record type and ensure the corresponding lookup is not null.
  • Use list views or Describe metadata to confirm exact field API names in your Cloudaware org.
  • Join to ownership (e.g., application/OU) to drive routing and reporting.