May 23, 2025

This document is no longer updated as of May 23, 2025. Read new release notes in the Command Platform Help.

May 16, 2025
2025.05.16

Enhancements to crawling/scanning with R7Crawler improvements including technology analysis, Chromium integration, and macro headers. Scan engine stability and responsiveness improvements. OTP support in ChromeHost macros. Password exposure check enhancements, NodeJS update, report config options, PCI 4.0 mapping, CSP meta tag handling, and ChromeDriver upgrade.

Mar 10, 2025
2025.03.10

This engine release includes Macro based HOTP/TOTP Authentication, enhancements to the SSL Strength and Swagger UI DOM Based attack modules. In addition, we have added enhanced Proxy support capabilities. It also includes various R7Crawler and ChromeHost improvements.

Jan 30, 2025
2025.01.30

This engine release includes enhancements to the BSQL Injection, File Inclusion and SSL Strength Modules. It also includes various R7Crawler and ChromeHost improvements.

Nov 28, 2024
2024.11.28

This engine release includes enhancements to the XSS severity when Content-Type is application/json. It also includes R7Crawler improvements, as well as various improvements and fixes for Automated Login Finder (ALF).

Oct 31, 2024
7.5.013

This engine release includes enhancements to the HTTP Headers, the X-Powered-By HTTP Header and Server Configuration modules. It also includes Macro playback improvements as well as various improvements and fixes for Automated Login Finder (ALF).

Apr 23, 2024
7.5.009

This latest major version release for AppSpider includes new crawler updates, a new REST service, Swagger/OpenAPI upgrade, new attack modules, as well as various improvements.

Sep 15, 2023
7.4.055

This release includes a new Selenium ChromeDriver version and an improvement to Swagger UI reports.

Aug 21, 2023
7.4.054

This release includes a new attack, a new MSAL authentication option, as well as various fixes.

Jul 06, 2023
7.4.053

This release includes a new OWASP Top 10 API Security Risks Report, a new attack, as well as various improvements.

May 17, 2023
7.4.052

This release includes a new attack template, a new attack, as well as various improvements and fixes.

Mar 30, 2023
7.4.051

This release includes updates to Predictable Resource Location, improvements to attack modules, and various fixes.

Feb 23, 2023
7.4.050

This release includes improvements to our attack modules and various fixes.

Feb 07, 2023
7.4.049

This release includes improvements to attack modules and various fixes.

Jan 11, 2023
7.4.056

This release includes various improvements and fixes.

Nov 28, 2022
7.4.048

This release includes improvements to attack modules and various fixes.

Oct 31, 2022
7.4.047

This release includes support for OpenAPI/Swagger multipart/form-data content type, as well as various improvements and fixes.

Sep 30, 2022
7.4.046

This release includes support for GraphQL SDL, as well as various improvements and fixes.

Sep 14, 2022
7.4.045

This release includes various fixes.

Sep 01, 2022
7.4.044

This release includes a new attack for NoSQLi, as well as various improvements and fixes.

Aug 16, 2022
7.4.043

This release includes a new check for HTTPS key length, the ability to upload YAML Swagger/OpenAPI files, attack and scan for GraphQL, as well as various improvements and fixes.

Jul 13, 2022
7.4.042

This release includes improvements to our attack modules and various fixes.

May 12, 2022
7.4.041

This release includes a new Out-of-Band SQL Injection module, several improvements, and a few fixes.

Apr 04, 2022
7.4.040

This release includes an updated RCE attack module to detect the Spring4Shell vulnerability.

Mar 31, 2022
7.4.039

This release includes the added ability to manage session tokens, a few improvements, and several fixes.

Feb 24, 2022
7.4.038

This release includes added TLS support, a few improvements, and some fixes.

Jan 31, 2022
7.4.037

This release includes an updated Log4j recommendation and several fixes.

Jan 07, 2022
7.4.036

This release includes a new timeout for Bootstrap, a new time-based attack for Postgres, and updated ChromeDriver, and some bug fixes.

Dec 22, 2021
7.4.035

This release includes a new Out of Band Injection attack module to detect Log4Shell vulnerabilities.

Nov 26, 2021
7.4.033

This release includes a few improvements and couple of fixes.

Oct 21, 2021
7.4.032

This release includes a few improvements and several fixes.

Oct 01, 2021
7.4.031

This release includes a new scan configuration field, an improvement to the LinksCrawled counter, and a few fixes.

Sep 13, 2021
7.4.030

This release includes a new flag to disable fallback authentication, improved SQL Injection module logic, and several fixes.

Aug 27, 2021
7.4.029

This release includes an improved XPath Injection module and two fixes.

Aug 16, 2021
7.4.028

This release includes new capabilities such as an Information Leakage attack, some improvements, and several bug fixes.

Aug 05, 2021
7.4.027

This build has been unstaged from our production environment.

Jun 28, 2021
7.4.026

This release for AppSpider includes a new XSS attack, some improvements, and several bug fixes.

Jun 25, 2021
7.2.140

This AppSpider release includes a fix for an error that caused authentication failures during scans.

Jun 09, 2021
7.2.139

This AppSpider release includes an upgrade to the Selenium ChromeDriver.

Jun 07, 2021
7.4.025

This release for AppSpider includes a new execution module, some improvements, and a few bug fixes.

May 05, 2021
7.4.024

This release for AppSpider includes improvements and a bug fix.

Apr 23, 2021
7.2.138

This AppSpider release includes an upgrade to the Selenium ChromeDriver.

Apr 20, 2021
7.4.023

This release for AppSpider includes new options, improvements, and some bug fixes.

Apr 09, 2021
7.2.136

This AppSpider release includes new OpenAPIv3 enhancements and a bug fix for content-type in Swagger documents.

Mar 26, 2021
7.2.135

This AppSpider release includes a bug fix for scans that consistently crashed when run against a customer site

Mar 22, 2021
7.4.022

This release for AppSpider includes new features, improvements and some bug fixes.

Mar 18, 2021
7.2.134

This latest release for AppSpider includes an update to ChromeDriver, a new attack, and fixed an issue with Swagger parsing.

Feb 22, 2021
7.2.133

This latest release for AppSpider includes a fixed issue where a swagger file caused the engine to crash.

Feb 22, 2021
7.4.021

This release for AppSpider includes a couple of improvements and some general fixes.

Feb 02, 2021
7.2.132

This release ships a Scan Engine improvement and updates the Selenium ChromeDriver.

Dec 30, 2020
7.2.131

This release provides the Scan Engine with additional functionality and fixes a false positive.

Nov 23, 2020
7.2.130

This release includes an update for the Selenium ChromeDriver and fixes some issues.

Nov 05, 2020
7.2.129

This release includes an update for the Selenium ChromeDriver.

Oct 26, 2020
7.2.128

This release includes improvements and false positive fixes for some AppSpider attack modules.

Oct 07, 2020
7.2.127

We added support for the Selenium .side file format, plus we improved and fixed a few things.

Jan 22, 2020
7.4.019

This latest major version release for AppSpider includes new attacks for existing modules, improved features, an upgrade to 64-bit architecture, and general fixes.



OSZAR »