Skip to main content
Skip table of contents

Release Notes November 2025

Release Date: 2025-12-11

New Features

Portal

New Detailed View of Vulnerabilities and enhanced Farsight data

We are pleased to launch a new, revamped detailed view of Vulnerabilities. This adds an enhanced visual view of vulnerability details to simplify the information presented.

image-20251210-152418.png

For Farsight, we have further enhanced the information provided by our in-house Threat Intelligence Team, providing counts of Campaigns, Exploits, Malware, Threat Actors, and Tools where this vulnerability is being used.

image-20251121-103744.png

In addition, we have added a number of other enhancements,

  • Added EPSS (Exploit Prediction Scoring System) scores to vulnerabilities where available.

  • Added in CISA KEV markers for all vulnerabilities on the CISA KEV list. It's also possible to now filter for all vulnerabilities on the CISA KEV list.

  • Visualisations of the last 30 days of changes to a vulnerabilities Farsight and EPSS score.

  • Exploits' has been renamed 'Exploit Details’ in both the general view and in the detail view. This better explains the data shown, as we would only show exploit details if this is public knowledge, and we cannot show exploit details for, as an example, private vulnerabilities.

  • Added new improved exploit sources, increasing the number of vulnerabilities we now have exploit information available for.

As we have improved our exploit sources, it is possible that there will also be a higher number of vulnerabilities with ‘Exploit Details’ available. As we add more exploit sources, the accuracy of the data increases, providing the most up to date information about available exploits we possibly can.

Asset Group-level comments and direct communication

Asset Groups now support comments, giving teams additional shared space for discussions. In Managed Asset Groups, users can also message our pentesters directly from the Asset Groups dashboard, creating a smoother workflow for communication.

Status verified column for fixed vulnerabilities

We have introduced a new Status verified column to improve visibility over remediation. For any finding marked as fixed, this field shows whether the fix has been independently confirmed by our pentesting team through a verification request. If the value is false, the finding has been marked as fixed by the customer but has not been validated by us. The column can be added to the Findings view, and the same verification information now appears in the Detailed report for each vulnerability.

Bug Fixes and Minor Improvements

Portal

  • Fixed an issue with Delta overview showing invalid values in exported reports.

  • In Exported reports, OWASP Top 10 reappeared for non-Appsec findings, this has been corrected and they will no longer show for non-Appsec findings.

  • Exported reports now take into account timezones again, and will display in the correct timezone, not just GMT.

  • Exported reports had missing or erroneous page breaks, they are now displayed in the correct places.

  • Titles now render properly in exported reports.

  • Fixed an issue where it was possible for an SLS scan to be triggered, when the corresponding Configuration had been deleted.

  • For Scale scan configurations, request filters now support an extended mode that lets users limit how many times the scanner will follow URLs matching a specific pattern. This is useful for scenarios where a site contains thousands of near-identical pages, such as product listings, which do not need to be scanned repeatedly. Instead of excluding these URLs entirely, users can now allow the scanner to visit them only a defined number of times before skipping the rest.
    This improves efficiency, reduces noise and scan duration, and avoids unnecessary load on target.

Outscan

  • Fixed an issue where PCI score was not in Japanese when the language was set.

  • Fixed a rare issue where errors were encountered when using ADFS for SSO.

Versions

HIAB XML Application Version: v14.26.39

Agent Version: 1.32.6

For more information about Agent versions, see Agent Latest Version.

Vulnerability Detection Update

The latest updates are published here: Vulnerability Detection Update.




Copyright

© 2025 Outpost24® All rights reserved. This document may only be redistributed unedited and unaltered. This document may be cited and referenced only if clearly crediting Outpost24® and this document as the source. Any other reproduction and redistribution in print or electronically is strictly prohibited without explicit permission.

Trademark

Outpost24® and OUTSCAN™ are trademarks of Outpost24® and its affiliated companies. All other brand names, product names or trademarks belong to their respective owners.

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.