2023.2.16 Maintenance Release

Prev Next

Release Notes

Bug Fixes

This maintenance release of Itential Platform includes fixes for bugs that were reported to Itential Product Support.

Key ID Release Note
ENG-8953 When opening a JSON Form to select YANG Models, the form did not show any Yang elements. Fixed the JSON YANG schema search to parse the form correctly and get Yang schemas for multiple adapters.
ENG-9018 In a JSON Form with a table that has a custom key, adding a form element to the table and then changing the custom key no longer removes the added element.
ENG-9031 API errors as a result of cloning a Command Template and Analytic Template no longer crash the UI. Also updated the JSON schema for Command Templates and Analytic Templates to allow for the createdBy and lastUpdatedBy fields to be null.
ENG-9268 When collapsing a schema in JST Designer, any nested assignments disappear which allows users to create invalid duplicate assignments. Fixed the schema collapse issue to ensure assignments persist and prevent invalid assignments.
ENG-9478 Added ancestor-checking in the cancel jobs endpoint to only cancel the greatest ancestor within a batch, and removing any unnecessary compute without affecting cancellation results. This also mitigates the likelihood of runaway recursive looping into high memory usage.
ENG-9559 Fixed an issue where Integration Models that errored during conversion to the internal Platform model caused subsequent Integration Models to not load into the Platform.
ENG-9878 Renaming a Command or Analytic Template in Projects to a duplicate name correctly displays the error in Projects and no longer crashes the MOP service.
ENG-10179 Added a type check to the JSON form dropdown to confirm source items are valid and prevent search issues in the Render JSON Schema task.
ENG-10185 Added a missing property key to resolve a "React Missing Array Key" security rule warning.
ENG-10263 Updated the axios dependency across Itential Platform to resolve XSS and SSRF vulnerabilities.

Improvements

This section highlights quality improvements to Itential Platform's functionality in this maintenance release.

Key ID Release Note
ENG-8269 Improved device count functionality to fix an issue that caused no devices to be returned on the API call to retrieve device counts where devices did exist, as well as an issue that caused device counts of 0 to not be recorded in certain cases.
ENG-9897 Improved display of the Task Palette when initialized on the canvas. A "Load More" button is displayed when an Integration or Adapter has more than 100 tasks.

Security Changes

This section highlights fixes and measures to prevent and minimize security risks and vulnerabilities.

Key ID Release Note
ENG-10011 When running security scans, it showed affected versions of the axios package in Job Manager were vulnerable to Cross-Site Request Forgery (CSRF) risks. Updated axios dependency to version 0.29.0 to remove CSRF vulnerability.
ENG-10286 When running security scans, it showed affected versions of the axios package in Pronghorn Core were vulnerable to Server Side Request Forgery (SSRF) risks. Updated axios to version 1.7.4 or higher to resolve security vulnerability.

Automation Platform Versions

component version
itential/adapter-automation_gateway 4.31.4-2023.2.3
itential/adapter-azure_aaa 1.7.5-2023.2.2
itential/adapter-email 4.2.20-2023.2.0
itential/adapter-ldap 2.14.3-2023.2.2
itential/adapter-local_aaa 4.5.2-2023.2.0
itential/adapter-nso 7.9.4-2023.2.13
itential/adapter-radius 2.2.2-2023.2.0
itential/app-admin_essentials 5.4.10-2023.2.19
itential/app-ag_manager 1.20.3-2023.2.2
itential/app-automation_catalog 2.13.7-2023.2.2
itential/app-automation_studio 4.69.3-2023.2.202
itential/app-configuration_manager 3.117.5-2023.2.28
itential/app-form_builder 4.15.3-2023.2.6
itential/app-json_forms 1.42.3-2023.2.24
itential/app-jst 1.15.11-2023.2.14
itential/app-lifecycle_manager 1.38.4-2023.2.15
itential/app-mop 6.21.1-2023.2.18
itential/app-nso_manager 2.25.2-2023.2.5
itential/app-operations_manager 1.215.10-2023.2.60
itential/app-service_catalog 3.14.1-2023.2.3
itential/app-service_management 3.0.2-2023.2.3
itential/app-template_builder 2.9.1-2023.2.8
itential/app-workflow_builder 5.55.2-2023.2.21
itential/app-workflow_engine 11.9.6-2023.2.45
itential/database 2.0.8
itential/iap-ui 1.14.3-2023.2.7
itential/itential-utils 3.2.1
itential/logger 3.1.2
itential/network 4.2.0
itential/pronghorn-core 15.8.10-2023.2.67
itential/search 1.3.3-2023.2.0
itential/service 3.2.0
itential/tags 3.2.2-2023.2.0