Invicti Platform on-demand release notes
RSS feedThis document highlights the new features, new security checks, improvements, and fixed issues introduced in the Invicti Platform across recent releases. Each update focuses on enhancing usability, visibility, security coverage, and integration capabilities for security teams and developers.
2025
This section summarizes all releases, features, improvements, and fixes for 2025 as they're added.
Release 18122025
Release date: 18 December 2025
New features
- Added CircleCI integration (Read more)
Improvements
- In Automations, the "Report generated" event is now an action within the "Scan completed" event (Read more)
Resolved issues
- Fixed an issue where a vulnerability could be sent to multiple issue trackers (Read more here and here)
- Fixed an issue where editing an existing Jira integration caused authentication issues (Read more)
- Fixed an issue where assignee was removed when editing vulnerability details
Release 04122025
Release date: 4 December 2025
New features
- Improved API Insights dashboard to respect user access restrictions, preventing users from viewing results for targets they don't have permission to access. Only users who have access to all targets can view the dashboard (Read more)
- Users can now add bulk comments and tags to vulnerabilites (Read more)
- Enabled users to re-register multiple times using the same NTA token, improving registration flexibility
- Users can now add API specs via URL reference in target settings, allowing the scanner to pull specs at runtime from targets not accessible to Invicti cloud services (Read more)
- NTA now automatically shuts down after multiple failed connection attempts to Invicti Platform (Read more)
- Dark mode is now available
- Added preview capability for REST API specifications (OpenAPI, Swagger, RAML) after uploading (Read more)
- WAFs detected by DAST scanner are reported in the Scan activity log
- Auto-scalable agents (Read more)
Improvements
- Improved user experience when creating API Discovery targets and starting scans
- Addressed design inconsistencies for API discovery and API catalog pages
- Improved API reconstruction speed from network traffic in NTA
- NTA Helm deployments now automatically pull the most recent version, with older versions available upon request
- Minor usability improvements across the app
- API catalog now displays additional target details when clicking on a row (Read more)
- SCIM swagger is now available among API specifications (Read more)
- Forms containing the
inv-ignoreCSS class are now excluded from DAST scanner testing - Scan duration calculation now includes scan pause time for more accurate reporting
- Added pagination, sorting, and filtering capabilities to the PCI ASV scans page