Resolved issues
The following highlighted issues have been resolved in {ProductFullName} version 7.0.0.
In previous versions of {ProductShortName}, no Update Notification
appeared at top of window after the fields Application
, Job Function
, and Business services
were updated. MTA-1024
In previous versions of {ProductShortName}, it was not possible to create a Jira instance (issues.stage.redhat.com) behind a proxy. MTA-849
redirect_uri validation
logicA flaw was found in the redirect_uri validation
logic that allows for a bypass of otherwise explicitly allowed hosts. The problem arises in the verifyRedirectUri
method, which attempts to enforce rules on user-controllable
input, but can cause a desynchronization in how Keycloak and browsers interpret URLs.
For more details, see (CVE-2023-6291).
For a complete list of all issues resolved in this release, see the list of Resolved Issues in Jira.