<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
    <atom:link href="https://docs.invicti.com/ip/release-notes/Invicti-Platform-on-premises/rss.xml" rel="self" type="application/rss+xml" />
        <title>Invicti Release Notes – Invicti Platform on-premises</title>
        <link>https://docs.invicti.com/ip/invicti-platform-on-premises-release-notes</link>
        <description>New features, new security checks, improvements, and fixed issues introduced in the Invicti Platform on-premises across recent releases.</description>
        <lastBuildDate>Tue, 03 Feb 2026 12:00:00 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <language>en</language>
        <copyright>Copyright © 2026 Invicti</copyright>
        <item>
            <title><![CDATA[Release 26.34.260203090313]]></title>
            <link>https://docs.invicti.com/ip/invicti-platform-on-premises-release-notes#release-26.34.260203090313</link>
            <guid>https://docs.invicti.com/ip/invicti-platform-on-premises-release-notes#26.34.260203090313</guid>
            <pubDate>Tue, 03 Feb 2026 12:00:00 GMT</pubDate>
            <description><![CDATA[New features, new security checks, improvements, and fixed issues introduced in the Invicti Platform on-premises across recent releases.]]></description>
            <content:encoded><![CDATA[<h4>New features</h4>
<ul>
<li>Implemented a feature that allows users to override the severity of vulnerabilities detected in DAST scans (Read more on <a href="change-severity-level">individual vulnerability&#39;s</a> and <a href="severity-overrides">global severity</a> changes)</li>
<li>Implemented screenshot capture during DAST scans to improve visibility of the scanning process and authentication failures (<a href="review-scan-results#scan-summary">Read more</a>)</li>
<li>Compliance classification information is now included in vulnerability details to support regulatory alignment and audit readiness (<a href="view-vulnerability-details#vulnerability-tab">Read more</a>)</li>
<li>Added support for automatic user provisioning during IdP-initiated SAML SSO login</li>
<li>Added CircleCI integration (<a href="/continuous-integration-overview">Read more</a>)</li>
<li>Improved API Insights dashboard to respect user access restrictions, preventing users from viewing results for targets they don&#39;t have permission to access. Only users who have access to all targets can view the dashboard (<a href="/api-insights-dashboard">Read more</a>)</li>
<li>Users can now add bulk comments and tags to vulnerabilites (<a href="/add-comments-tags-vulnerabilities">Read more</a>)</li>
<li>Enabled users to re-register multiple times using the same NTA token, improving registration flexibility</li>
<li>Users can now add API specs via URL reference in target settings, allowing the scanner to pull specs at runtime from targets not accessible to Invicti cloud services (<a href="/overview-of-scanning-apis#use-internal-url-references-for-api-specifications">Read more</a>)</li>
<li>NTA now automatically shuts down after multiple failed connection attempts to Invicti Platform (<a href="/nta-troubleshooting#authorization-failures">Read more</a>)</li>
<li>Dark mode is now available</li>
<li>Added preview capability for REST API specifications (OpenAPI, Swagger, RAML) after uploading (<a href="/ip/scan-rest-apis#preview-api-specification-operations">Read more</a>)</li>
<li>WAFs detected by DAST scanner are reported in the Scan activity log</li>
<li>Auto-scalable agents (<a href="/install-autoscaling-agent-k8s">Read more</a>)</li>
</ul>
<h4>Improvements</h4>
<ul>
<li>Discovered and inventoried APIs can now be exported directly from the API catalog view, allowing users to download their full API inventory</li>
<li>Enabled users to re-register multiple times with the same NTA token</li>
<li>Improved the user experience after creating or linking a target in the API security platform, ensuring users land in the API catalog with an informative success message.</li>
<li>Users can now preview uploaded or linked API specifications directly within the target configuration.</li>
<li>When the API Security add-on license is added or removed, engine-based discovery is automatically enabled or disabled accordingly to reflect the current license state.</li>
<li>APIs can now be added as reference URLs even when the endpoint is not reachable from the cloud, supporting the use of internal or private URLs.</li>
<li>The Kong Konnect integration has been upgraded to use the latest API v3.</li>
<li>The time-zone picker in user profile settings has been upgraded and now includes India Standard Time (GMT +5:30).</li>
<li>AI-powered features are now enabled by default for all new accounts, with account owners given the option to disable them at the time of account creation.</li>
<li>The Scan Preparator now supports proxy configuration for remote backend access, enabling internal scanning agents to reach backend services through a proxy.</li>
<li>The LSR engine now forwards screenshot data captured during scans to the UI, making visual scan evidence available directly in the interface.</li>
<li>The ICBD component has been updated to run on Node.js 20.x (LTS), ensuring compatibility with the latest long-term support release.</li>
</ul>
<h4>Resolved issues</h4>
<ul>
<li>Fixed an issue where creating a target from a discovered AWS API failed.</li>
<li>Resolved an issue where the API target detail view returned an incorrect number of operations.</li>
<li>GraphQL and other unsupported API spec types are no longer incorrectly displayed in API Hub.</li>
<li>Fixed an issue where the API Hub Swagger page failed.</li>
<li>Resolved an issue where default sorting and manual sorting changes of API operations were not applied correctly.</li>
<li>Fixed an issue where the API Target Source type displayed in the UI did not match the value set when uploading from the target configuration.</li>
<li>Fixed a communication issue between DAST and Inventory services when updating a target agent.</li>
<li>Fixed an issue where the Exemptions list failed to display more than 50 users.</li>
<li>Fixed an issue where the internal scanner was generating excessive request volume.</li>
<li>Resolved an issue where LSR scans with restrictions and imported files failed to complete successfully.</li>
</ul>
<hr>
<h2>2025</h2>
<p>This section summarizes all Invicti Platform on-premises releases, including new features, improvements, and fixes as they’re added.</p>
]]></content:encoded>
        </item>
        <item>
            <title><![CDATA[Release 25.322.251118145546]]></title>
            <link>https://docs.invicti.com/ip/invicti-platform-on-premises-release-notes#release-25.322.251118145546</link>
            <guid>https://docs.invicti.com/ip/invicti-platform-on-premises-release-notes#25.322.251118145546</guid>
            <pubDate>Thu, 20 Nov 2025 12:00:00 GMT</pubDate>
            <description><![CDATA[New features, new security checks, improvements, and fixed issues introduced in the Invicti Platform on-premises across recent releases.]]></description>
            <content:encoded><![CDATA[<p>This is the first release of the Invicti Platform on-premises edition. This release provides a self-hosted deployment option that allows organizations to run Invicti Platform within their own infrastructure using Helm charts on Kubernetes.</p>
<p>To install Invicti Platform on-premises, follow the comprehensive <a href="/ip/category/invicti-platform-on-premises"><strong>Helm setup documentation</strong></a>, which covers:</p>
<ul>
<li>Architecture overview and system requirements</li>
<li>Prerequisites and Kubernetes cluster configuration</li>
<li>Step-by-step installation instructions</li>
<li>Post-installation setup and configuration</li>
<li>Troubleshooting guidance</li>
</ul>
<hr>
]]></content:encoded>
        </item>
    </channel>
</rss>