IAP Bug Fixes & Improvements - ReleaseNotes/2
- 15 Oct 2024
-
DarkLight
-
PDF
IAP Bug Fixes & Improvements - ReleaseNotes/2
- Updated on 15 Oct 2024
-
DarkLight
-
PDF
Article summary
Did you find this summary helpful?
Thank you for your feedback
October 2024 Maintenance Release
IAP Versions
Consolidated Release Notes
Bug Fixes
This maintenance release of IAP includes fixes for bugs that were reported to Itential Product Support.
Key ID | Release Note | Release Versions Implemented |
---|---|---|
ENG-2697 | When viewing workflows and browsing tasks, the workflow will no longer flag tasks as changed and lose some variable references. Save will also not be enabled if no changes are made. | IAP/2023.2.9 IAP/2023.1.20 |
ENG-3933 | Updated styling in the editor to fix a bug that prevented the Methods panel from reopening after closing. Customers can now open/close the method panel in Automation Studio/JST-Designer as expected.. | IAP/2023.2.9 |
ENG-4407 | The Evaluation (Eval) task was missing an editable description field. To resolve, added a Details tab with an editable description field to the Eval task. | IAP/2023.2.9 IAP/2023.1.20 |
ENG-4687 | When adding/creating assets in Projects, the navigation UI would not work properly when special characters (e.g., / and ? ) were in the asset name. Added URL sanitization (URI encoding) to properly handle links to assets with special characters. |
IAP/2023.2.9 |
Security Changes
This section highlights fixes and measures to prevent and minimize security risks and vulnerabilities.
Key ID | Release Note | Release Versions Implemented |
---|---|---|
ENG-2597 | Updated the node-ip library to resolve a SSRF security vulnerability in IAP Workflow Builder. |
IAP/2023.2.9 |
ENG-2634 | Updated the axios library in IAP Workflow Builder to fix a CSRF seurity vulnerability. |
IAP/2022.1.29 |
ENG-2635 | The ip package is flagged as vulnerable in the database module. Fixed vulnerability caused by ip package by overriding the socks dependency in the database module. |
IAP/2023.2.9 |
ENG-2821 | The ip package was flagged as vulnerable in the database module. Fixed vulnerability caused by ip package by overriding the socks dependency in the database module |
IAP/2023.2.9 |
ENG-3417 | When bind requests are made in the LDAP adapter, a request timeout will cause sensitive information to be logged. Fixed logging of sensitive information on a request timeout in the LDAP adapter by removing the argument containing sensitive information from the timeout event handler. |
IAP/2023.2.9 IAP/2023.1.20 IAP/2022.1.29 |
Was this article helpful?