Release Date: 2025-10-21
New Features
Appsec
Modernized crawler engine with improved SPA coverage
We have introduced a modern crawler engine that renders pages with an up-to-date browser engine. This improves coverage of single-page applications and other JavaScript-intensive sites.
When configuring a scan, select the Enable Enhanced Crawler option. No further changes need to be made to your configuration.
Playwright authentication
We added Playwright as a new browser-based authentication method for DAST scans. Playwright runs a real browser, which makes scripted logins more reliable and easier to maintain than legacy approaches.
In order to test it out, create or edit a scan configuration Authentication setup and select Playwright as the method and follow the steps in our Knowledge Base. Existing Selenium or Lua profiles will continue to work for now, but Selenium will be deprecated on March 31st, 2026.
Portal
Products and Services view in Assets
-
Building on last months release, both the Products and Services information is now available for a specific asset. This can be accessed from the Asset view by selecting an Asset to open the detail pane. Select the appropriate tab to see details on either the Ports or Certificate information.
New Visual Look to PDF reports
-
Exported PDF reports now have a new visual styling, matching the modernisation of Portal.
Bug Fixes and Minor Improvements
Portal
-
Add an Event notification for Product End of Life.
-
Added a link to access the Knowledge base directly from within Portal.
-
Improved UI feedback when a Filter or similar results in no findings rather than just showing a blank screen. For example:
-
Fixed an issue where the Event Notification window may go blank when using a Translation
-
Fixed an issue where Host Maps were sometimes not present when running a Scale scan using IPv6.
-
Fixed an issue that may occur with Delta reporting where the Badge number may differ from the number of findings shown due to specific filters being set.
-
Fixed an issue with Workflows where only the final component of the scan had the Seen Last Scan set to be True. This will now work independently for each scan type within the Workflow.
Outscan Classic
-
Fixed an issue with ADFS SSO where an empty assertion message was sent back by ADFS after a successful authentication.
Public Preview Features
Follow the link to read more about our Product Stages.
Live Preview for Event Notification templates
-
Missing variables for Product, Port, Service and Certificate have now been added.
-
Default templates for new informational findings have been updated.
-
The WATCHED_FINDING_UPDATED trigger can now be viewed, however, issues with how it triggers are still being investigated.
Versions
HIAB XML Application Version: v14.24.85
Agent Version: 1.32.3
For more information about Agent versions, see Agent Latest Version.
Vulnerability Detection Update
The latest updates are published here: Vulnerability Detection Update.
End of Life Announcement
Selenium
-
Official End of Life date:
March 31st, 2026 -
Official End of Support date:
March 31st, 2026