You have to Sign in before you can download this release.

Show release notes for v3.6.1

  • Update app to new Tylium layout
  • Upgrade to Rails 5.2.4.1
  • Added the ability for kits to update an instance's Plugin Manager templates
  • Add revision history for cards
  • Upgrade bundler
  • Bugs fixed:
    • Updated support beacon. Legacy support was dropped for older versions
    • Fix errors on content overwrite flash messages
    • Fail and redirect to login instead of raising an error when attempting to log in as a user that has been removed
    • When a report export is invalid and errors we disable the the download button to prevent further errors
    • Fix the mail initializer not finding existing configuration settings from the db
    • Fix Cancel link path for the Note Edit page
    • Fix services_extras not being excluded from Excel exports
    • Fix Rule checking for non-existent fields
    • DUP Installation will properly apply Debian 10 assets to OVA's
    • OVA has removed invalid nameserver entries
  • Integration enhancements:
    • CVSSv3 calculator provides access to all Temporal/Environmental fields.
  • Reporting enhancements:
    • Add support for ellipsis
    • Better Evidence references on failed validations
  • REST/JSON API enhancements:
    • Add team (team id, team name, team_since) in teams API endpoint
  • Security Fixes:
    • High: Authenticated author can no longer continue to make project changes and will be logged out after being disabled by an admin
    • Medium: Prevent admins from updating other user's comments
    • Upgraded gems: puma