Release Notes 6.10.0 - 30-01-2023
Security fixes:
- #692 AngularJS security
- #682 Update packages
- #639 CORS not allowed from GRCcontrol application
- #572 Upload file not scanned/checked for correct extension
- #557 Update of third party libraries
- #534 Angular 14 migration fixes
- #532 Improve cookie settings
- #530 Referrer policy is not implemented
- #527 JWT contains more user information than is required
- #524 HSTS is not implemented
- #501 Update of third party libraries
Bug fixes:
- #687 Removing measure rain on a default target gives error message
- #655 Snackbar opens multiple times when opening popup
- #654 System.Drawing.Common is not supported on non-Windows platforms - .NET 6 under Linux
- #628 Suggestion - expand text field function
- #620 Grid buttons do not work in Internal Audit overview
- #590 Change password in identity save button remains disabled
- #586 Improvement: action holder does not see text in field description. GRC administrator does.
- #575 After saving one change to an inventory the button is no longer clickable
- #573 Date listing detail screen of a change deviates
- #572 Uploaded file is not scanned/checked for correct extension
- #543 'Remember me' when logging in with AzureAD and company network does not work
- #542 Add objective button at organisation parts has different styling
- #528 Removing measures from an objective
- #526 Implementation cannot be declared `not applicable/applicable'
- #513 Import management right is still shown as `this right is not yet in use'
- #511 Process creation on behalf of responsible person cannot be saved
- #506 Fields which cannot be changed can be typed into a control task
- #505 Historical implementations are not displayed
- #500 Message too many users `save & back' button
- #465 Excel export of Identity audit trail shows incorrect time stamping
- #464 Incorrect numbers in dashboard objectives if no objective is selected
- #463 If customer does not have privacy module, incident resolution is no longer possible.
- #450 Difference in permissions under employee and authorisation role
- #449 External Audit - Failure to delete multiple findings at once
- #447 Selecting measures after a question set has no action
- #445 Person responsible for process does not change when changing to other organisational unit
- #444 Search for " ' " results in an error message - Measures link in different places
- #443 Measures cannot be removed resulting in an error message.
- #434 Measures on an incident cannot be set to relevant/not relevant.
Improvements:
- #634 Translation updates
- #627 Logical sequence options obligation DA
- #626 Store scheduled and executed hours on audit objects
- #624 Support for selecting risk treatments in internal audits
- #606 All tasks under menu task dashboard
- #605 My department tasks filter for open tasks and all tasks
- #593 Include direct task link in task mail
- #592 Include task description in task mail
- #587 Make check instruction visible with implementation task
- #561 Disable activation mail if using ADFS or AzureAD link.
- #555 OData audit log when retrieving data
- #554 Question set new question type with inventory
- #553 Approve improvement action
- #550 Apply house style to GRCcontrol notifications
- #539 Turn on periodic implementation after completion of implementation
- #538 Ability to cancel control tasks
- #469 Tasks overview