Security Testing Orchestration release notes
These release notes describe recent changes to Harness Security Testing Orchestration (NextGen SaaS).
- Progressive deployment: Harness deploys changes to Harness SaaS clusters on a progressive basis. This means that the features described in these release notes may not be immediately available in your cluster. To identify the cluster that hosts your account, go to your Account Overview page in Harness. In the new UI, go to Account Settings, Account Details, General, Account Details, and then Platform Service Versions.
- Security advisories: Harness publishes security advisories for every release. Go to the Harness Trust Center to request access to the security advisories.
- More release notes: Go to Harness Release Notes to explore all Harness release notes, including module, delegate, Self-Managed Enterprise Edition, and FirstGen release notes.
January 2024
Version 1.81
Fixed issue
Fixed an issue on Self-Managed Enterprise Edition platforms where approving or rejecting an exemption threw a 500 error. (STO-6958)
Version 1.80.1
Feature enhancements
-
You can now run STO scans with a CI free license. In a CI Build step, select Add step and then go to Security and Security Tests in the step library. All STO steps are available. The only limits to this functionality are those imposed by the CI Free license. (STO-6824)
-
The Security Tests UI displays a more helpful, accurate message when no issues match the show/hide filters. (STO-6919)
January 11 runner update
Feature enhancements
-
You can now scan .exe and .net files using the OWASP scan step. (STO-6852, ZD-55558)
-
OWASP scans now display the package name and version for all issues. (STO-6725)