Skip to Content

Jan 31, 2022

This release includes an updated Log4j recommendation and several fixes.

Improved

  • Updated Log4j recommendation. We updated the Log4j Attack Module, and now recommend upgrading applications to:
    • 2.3.1 for Java 6
    • 2.12.3 for Java 7
    • 2.1.7.0 for Java 8 and later

Fixed

  • The report generator is no longer running into permissions issues when generating PDF files.
  • We resolved a 504 server response error where a comma was treated as a cookie separator.
  • The scalar type default field is now working with OpenAPI.
  • The Traffic and Operation Log is now showing the correct data.
  • The Scan Engine no longer fails to respond to stop/pause commands.
  • The consumes value of application/x-www-form-urlencoded is no longer getting parsed as JSON in the swagger.