2.0.8

Security

  • Fixed Reflected XSS on Login page (CVE-2019-15898) (credit Luca Ottoni and Lucas Carmo) [TPS#14072] -SW

Added

  • Added messages in e-mail templates for %lastalertlog%, %last10alertlogs%, and %uniquehosts% when no log lines match the alerting query -SAW

Fixed

  • Fixed session ID not reinitializing when logging in -JO
  • Fixed Debian init file to export ES_HEAP_SIZE to automatically calculate memory [TPS#14099] -SW
  • Fixed issue with updating tcp logstash plugin before logstash update -JO