Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Product

Affected Version/Build

Patched Version/Build

ConfigOS Command Center

2.8.5.00219 and belowearlier

2.8.5.00236 and abovelater

...

Vulnerability Overview:

The following CVEs have been identified in third-party components used by our software:

...

Our development team has already prioritized this issue and has included a security update in the supported releases of our affected products. The security update includes the following security changes:

  • The ImageSharp library has been removed from ConfigOS Command Center and will no longer be included in future releases.

  • System.Data.SqlClient has been upgraded to version 4.8.6 – Release Notes.

  • Microsoft.Data.SqlClient has been upgraded to version 5.1.3 – Release Notes.

...

To maintain the security of your environment, we strongly recommend that you  update update any installed instances of the affected product(s) as soon as possible. A separate alert will go out when patched releases are published to the customer portal.

...