May 20, 2025
8.8.0

This release includes new vulnerability and policy coverage, an improved vulnerability search, and several bug fixes.

We are currently rolling out the 8.8.0 product update and anticipate that the majority of users will receive this update by May 28, 2025.

New

  • Vulnerability coverage. We added recurring vulnerability coverage for Wordpress Plugins. This coverage will detect Wordpress Plugins on the server where Wordpress is running.
  • Policy coverage. We added built-in support for the CIS Microsoft Windows Server 2025 v1.0.0 benchmark.

Improved

  • Search improvements. We improved the performance of vulnerability searches.
  • Improved security posture. We improved customers’ security posture by upgrading to the latest Apache Commons libraries.

Fixed

  • We fixed an issue with Windows WAR file scanning that was leading to scans failing to complete.
  • We fixed an issue that caused problems saving a site if excluded asset groups or assets in the scan schedule weren’t also present in the list of included asset groups or assets.
  • We fixed an issue in the SQL Query Export report, where first found dates on some vulnerabilities were inconsistent.