IAP Bug Fixes & Improvements - ReleaseNotes/2
  • 15 Oct 2024
  • Dark
    Light
  • PDF

IAP Bug Fixes & Improvements - ReleaseNotes/2

  • Dark
    Light
  • PDF

Article summary

October 2024 Maintenance Release

IAP Versions

Consolidated Release Notes

Bug Fixes

This maintenance release of IAP includes fixes for bugs that were reported to Itential Product Support.

Key ID Release Note Release Versions Implemented
ENG-2697 When viewing workflows and browsing tasks, the workflow will no longer flag tasks as changed and lose some variable references. Save will also not be enabled if no changes are made. IAP/2023.2.9
IAP/2023.1.20
ENG-3933 Updated styling in the editor to fix a bug that prevented the Methods panel from reopening after closing. Customers can now open/close the method panel in Automation Studio/JST-Designer as expected.. IAP/2023.2.9
ENG-4407 The Evaluation (Eval) task was missing an editable description field. To resolve, added a Details tab with an editable description field to the Eval task. IAP/2023.2.9
IAP/2023.1.20
ENG-4687 When adding/creating assets in Projects, the navigation UI would not work properly when special characters (e.g., / and ? ) were in the asset name. Added URL sanitization (URI encoding) to properly handle links to assets with special characters. IAP/2023.2.9

Security Changes

This section highlights fixes and measures to prevent and minimize security risks and vulnerabilities.

Key ID Release Note Release Versions Implemented
ENG-2597 Updated the node-ip library to resolve a SSRF security vulnerability in IAP Workflow Builder. IAP/2023.2.9
ENG-2634 Updated the axios library in IAP Workflow Builder to fix a CSRF seurity vulnerability. IAP/2022.1.29
ENG-2635 The ip package is flagged as vulnerable in the database module. Fixed vulnerability caused by ip package by overriding the socks dependency in the database module. IAP/2023.2.9
ENG-2821 The ip package was flagged as vulnerable in the database module. Fixed vulnerability caused by ip package by overriding the socks dependency in the database module IAP/2023.2.9
ENG-3417 When bind requests are made in the LDAP adapter, a request timeout will cause sensitive information to be logged. Fixed logging of sensitive information on a request timeout in the LDAP adapter by removing the argument containing sensitive information from the timeout event handler. IAP/2023.2.9
IAP/2023.1.20
IAP/2022.1.29

Was this article helpful?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.