2.1.7

Security

  • Fixed XSS in Notification Methods -> Email Users menu (credit Jinson Varghese Behanan and Astra Security) (CVE-2020-16157) [TPS#15232] -SAW

Added

  • Added separate permission level for Alert Contact visibility/editing [TPS#14984] -SAW

Fixed

  • Fixed issues when using FreeIPA containers with LDAP integration [TPS#15236] -SS
  • Fixed host freshness alerts reporting incorrect number of non-sending hosts [TPS#15086] -SAW
  • Fixed “Exported CSV Timezone” global setting always displaying “Cluster Timezone” [TPS#15094] -SAW
  • Fixed incorrect timestamps showing for AD/LDAP certificate expiration [TPS#15105] -SAW
  • Fixed incorrect handling of “Disable Reverse DNS” global option -SAW
  • Fixed setup-linux.sh for Ubuntu 20 [TPS#15188] -SAW,CD
  • Fixed performance issue with alerting for installations with many open indices [TPS#15234] -SAW