> For clean Markdown of any page, append .md to the page URL. > For a complete documentation index, see https://docs.itential.com/itential-platform/2023-2/release-notes/changelog/2025/4/24/llms.txt. > For AI client integration (Claude Code, Cursor, etc.), connect to the MCP server at https://docs.itential.com/_mcp/server. # 2023.2.17 Platform 2023.2.17 is a maintenance release containing enhancements, bug fixes, and security updates. #### Bug fixes (6) | Feature | Description | | ----------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | | **an issue where groups and roles** (ENG-9372) | Fixed an issue where groups and roles added to a custom group with the create group API were not properly reflected on a user in the new group. | | **Itential servers in an HA (high** (ENG-9520) | Itential servers in an HA (high availability) cluster occasionally showed different sets of custom roles. Updated the `itential/service` and `itential/logger` to enable service and startup errors to reach log files. All startup and shutdown notification logs are now logged with the system. | | **viewing a transformation containing a nested** (ENG-9813) | When viewing a transformation containing a nested function step with an empty `args` array, opening the function causes rendering and runtime issues. Added additional checks to address rendering and runtime issues when viewing a transformation with a nested function step in this state. | | **exporting a project with workflows from** (ENG-10364) | When exporting a project with workflows from a `dev`environment and then importing it to `staging` environment, the workflows were missing post-import. Fixed an issue where projects containing workflows with a `createdBy` field would fail to import by removing this field during the import process. | | **Integration tasks added to workflows would** (ENG-10679) | Integration tasks added to workflows would remain in a running state indefinitely. To resolve this issue, modified the lifecycle logic for adding integration configs to the `global.config` when the Platform starts up. | | **The run window on a task** (ENG-10795) | The run window on a task would stop working when job execution was disabled and then immediately re-enabled from Admin Essentials. Fixed an issue where the action of stopping the task worker affected the ability to handle scheduled tasks on an instance until the instance was restarted. | #### Security fixes (5) | Feature | Description | | ---------------------------------------------------------- | ---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- | | **running security scans, it reported a** (ENG-9790) | When running security scans, it reported a package dependency in Operations Manager was vulnerable to Prototype Pollution. Removed a duplicate package dependency to resolve the security issue. | | **running security scans, it showed improper** (ENG-10284) | When running security scans, it showed improper verification of the cryptographic signature. Upgraded the `@node-saml/passport-saml` package to version 5.0.1 to resolve security vulnerability. | | **running security scans, it showed affected** (ENG-10287) | When running security scans, it showed affected versions of the `body-parser` package were vulnerable to Asymetric Resource Consumption (Amplification). Updated the package to version 1.20.3 to fix security vulnerability. | | **running security scans, it showed affected** (ENG-11010) | When running security scans, it showed affected versions of the `ip` package in Operations Manager were vulnerable to Server Side Request Forgery (SSRF) risks. Updated `ip` to version 2.0.8 to resolve security vulnerability. | | **running security scans, it showed affected** (ENG-11011) | When running security scans, it showed affected versions of the `cross-spawn` package in Operations Manager were vulnerable to Regular Expression Denial of Service (ReDoS). Updated the package to version 7.0.5 to resolve security vulnerability. | #### Component versions ### Automation Platform | Component | Version | | --------------------------- | ------------------ | | adapter-automation\_gateway | 4.31.4-2023.2.3 | | adapter-azure\_aaa | 1.7.5-2023.2.2 | | adapter-email | 4.2.20-2023.2.0 | | adapter-ldap | 2.14.3-2023.2.2 | | adapter-local\_aaa | 4.5.2-2023.2.0 | | adapter-nso | 7.9.4-2023.2.14 | | adapter-radius | 2.2.2-2023.2.0 | | app-admin\_essentials | 5.4.10-2023.2.18 | | app-ag\_manager | 1.20.3-2023.2.2 | | app-automation\_catalog | 2.13.7-2023.2.2 | | app-automation\_studio | 4.69.3-2023.2.206 | | app-configuration\_manager | 3.117.5-2023.2.28 | | app-form\_builder | 4.15.3-2023.2.6 | | app-json\_forms | 1.42.3-2023.2.25 | | app-jst | 1.15.11-2023.2.14 | | app-lifecycle\_manager | 1.38.4-2023.2.15 | | app-mop | 6.21.1-2023.2.18 | | app-nso\_manager | 2.25.2-2023.2.5 | | app-operations\_manager | 1.215.10-2023.2.64 | | app-service\_catalog | 3.14.1-2023.2.3 | | app-service\_management | 3.0.2-2023.2.3 | | app-template\_builder | 2.9.1-2023.2.8 | | app-workflow\_builder | 5.55.2-2023.2.21 | | app-workflow\_engine | 11.9.6-2023.2.47 | | database | 2.0.8 | | iap-ui | 1.14.3-2023.2.7 | | itential-utils | 3.2.1 | | logger | 4.1.0 | | network | 4.2.0 | | pronghorn-core | 15.8.10-2023.2.73 | | search | 1.3.3-2023.2.0 | | service | 3.3.1 | | tags | 3.2.2-2023.2.0 |