The 15.3.1 Service Pack delivers key bug fixes, security updates, and usability improvements that enhance platform stability, navigation, and user experience.

Configurable Identity Field Visibility on Details Page

A new advanced system setting lets organizations control which identity-related fields (UID, Identifier, SSN) are visible on the Details view, improving compliance and privacy management.

What’s New?

  • Details_Page_ID_Visibility : In this setting, specify which identity fields should be displayed.

How Can I Enable The Feature?

To enable this feature, enter the fields you want to appear — none, one, or all — as a comma-separated list from the options: UID, Identifier, and SSN in the advanced system settings.
→ By default, all fields are visible. Removing a field from the configuration hides it dynamically in the UI. Hidden fields remain accessible via backend/API; only UI visibility changes.

Enhanced Security for UID Generation

UIDs are now generated using a cryptographically secure random generator, replacing the previous sequential implementation. This reduces predictability and improves protection against brute-force or enumeration attacks.

Improved Default Layout for Flowcharts Without Transitions

Flowcharts with no connectors now automatically render using the set-level layout, improving readability, preserving task order, and saving screen space for top-level processes without gateways or flow objects. Existing top-to-bottom layouts remain when connectors are present, and switching views does not affect saved configurations.

Creation & Edition of Content

  • Fixed an issue where newly created roles, documents, and document folders were not immediately visible in list views or selection dialogs (e.g., when assigning a Role to a Resource), while remaining accessible via direct links.
  • Fixed an issue where changes made to an object in the edit form were temporarily not reflected in the Versioning section after saving, showing the previous version instead.
  • Fixed an issue in the Tree Selector where the button became unresponsive after use in an edit form, preventing users from reopening the selector without a page refresh.
  • Fixed an issue where users could not save a process form if mandatory UDAs were initially empty. While an error correctly appeared on the first attempt, the form could not be saved even after the UDAs were filled.
  • Fixed an issue where the tooltip for the Purge section in the Properties tab of the Edit form did not display correctly when hovering over the info icon.

Content Lifecycle

  • Fixed an issue where the Data Harmonization Version Out of Sync action box remained visible after synchronizing.
  • Fixed an issue where the Approve and Endorse buttons did not display, and the comment was prefilled incorrectly when the current user was an approver or endorser.
  • Fixed an issue where the Approval and Endorsement action boxes could not be expanded when another user was set as approver or endorser.
  • Fixed an issue where icons were duplicated in the Versioning Cycles History, Published Comment, and Approval Request Comment columns when multiple cycles or comments existed for an object.
  • Fixed an intermittent issue where the buttons on the Details view could disappear after setting approval configuration, saving, or approving an object.
  • Fixed an issue where approval cycles requiring signatures, started in older versions of EPC, could not be completed in v15.3.0.
  • Fixed an issue where users could not multi-assign reviewers, frequencies, or review start/end dates when editing multiple objects in the Governance module.

Object Book Generation

  • Fixed a syntax error that occurred when generating Object Books from the Diagram view, ensuring templates generate correctly and downloads complete as expected.

Collaboration

  • Fixed an issue in the Collaboration window on an object’s Details view where newly created posts and their replies were not consistently visible.

List View

  • Fixed an issue where process maps opened from the filtered List view (e.g., “Ireland”) did not display the selected localization in Diagram view.
  • Fixed an issue where filtering by name on the Document module List view did not return expected results in some cases.
  • Fixed an issue where column reordering and resizing in the List view could prevent saved column settings from being applied consistently when navigating between Sets and Processes.
  • Fixed an issue where the Reset to Default button in the Governance module List view did not correctly restore column order and visibility for non-admin users after an admin had changed environment defaults.
  • Fixed an issue where the List view could appear blank in some modules and in specific cases.

Table of Contents

  • Fixed an issue where the Show More button in the Table of Contents appeared even when there were no additional items to display, or did not appear correctly when more items were available.

Diagram View & Edition

  • Fixed an issue where expanding a process within a Process Set applied a custom layout incorrectly in the Diagram view.
  • Fixed an issue in the Diagram Editor where clicking Undo after using Auto Layout on maps without transitions caused the layout to display incorrectly.
  • Fixed an issue where edits to a task could occasionally fail to save under slow network conditions.

Home Page

  • Fixed an issue where the My Objects widget on the Home page did not return correct results on the first page load.
  • Fixed an issue where widgets on the Home page could shift to the left and save incorrect sizes after window resizing.

Security

  • Upgraded org.apache.tika:tika-parser-pdf-module to version 3.2.2 to address a vulnerability (CVE-2025-54988) that could allow crafted PDFs to trigger unintended behavior.
  • Upgraded Apache HttpClient5 to version 5.4.3 to address a vulnerability (CVE-2025-27820) affecting domain and host validation in cookie management and authentication flows.
  • Upgraded of commons-beanutils to version 1.11.0 to address a vulnerability related to improper access control and potential execution via BeanUtils property access.
  • Upgraded spring-core to version 6.2.11 to address CVE-2025-41248 and ensure downstream dependencies (Netty and Tomcat) are aligned and secure.
  • Updated a JavaScript BIMP configuration file to remove embedded credentials, ensuring usernames and passwords are no longer included in client-side files.
  • Updated the /api/v1/admin/sessions API to handle internal IP addresses more appropriately. The response now ensures only relevant client information is shown, improving clarity of session data.
  • Updated server behavior so that unsupported HTTP methods (e.g., Purge) now return a generic 405 Method Not Allowed response, preventing exposure of internal system details in the response.

Library Upgrades and Authentication Updates

  • Upgraded libraries to latest supported versions, removed Cognito authentication integration, and removed Passport.js authentication library.

Need more help with this?
Visit the Support Portal

Thanks for your feedback.