Invicti Enterprise On-Premises 17 Feb 2021
IMPROVEMENTS
- Added the option to provision a new member with SSO in the New Team Member addition screen.
- SSO Email requirement is not necessary for SSO-enabled accounts without enforcement
- Renewed PCI Compliance Report template
- Added scan profile and scan profile URL to scan report.
- Added the option to add a customized header text on the Account Settings page
- Improved issue severity sorting. Issues will be sorted as Critical, High, Medium, Low, Best Practice, Information Alerts on all pages.
- Redesigned Scan Time Window
- Improved design of important information, such as email and name, in dialogs
- Updated descriptions on edit and signup web pages
- Changed “Enable Limitless Scan” option under the General Settings to “Allow scanning without a duration limit”
- Redesigned Basic Authentication Form
- Added advanced script feature for the Azure Pipelines integration
- Updated related RegEx to let users using parentheses with the website name and profile name
- Added silent mode installation for Web Application
- Added phone number confirmation countdown timer
- Added the document link for Linux Agent installation on the New Agent page.
- Improved the speed of page loading on the Custom Script screen
- Improved the agent stability to prevent scans from being stuck
- Added the possibility to add non-registered emails in notifications
- Added SANS Top 25 report
- The Target URL will be displayed instead of the website URL in the scan reports
FIXES
- Fixed JSON Serialization problem in the scan profile
- Fixed typos in Invicti Rest API Endpoint explanation
- Fixed the validation message on the password change page
- Fixed the validation message for admin password on the password change page
- Fixed the Bugzilla operating system field’s name
- Fixed warning message for the Website Groups Update API
- Fixed undeleted scan files (which belong to completed scans) issue
- Disable status error fixed for Linux Agent
- Resolved Chromium’s auto select certificate problem. So, the problem of not being authenticated with the client certificate was solved.
- Fixed empty exported XML issue in F5 BIG-IP ASM Rules Report
- Fixed an issue where “Password Transmitted over HTTP” issues were reported for HTTPS requests.