Fixed issues for Splunk Enterprise Security

Splunk Enterprise Security 7.2.0 was released on September 6, 2023. For more information on release dates for the major versions of Splunk Enterprise Security, see Software Support Policy page.

This release includes fixes for the following issues:

Date resolved Issue number Description
2023-09-05SOLNESS-36169The Incident Review page loads entire asset and identity tables into memory.
2023-08-03SOLNESS-35988Macro endpoint links from the General settings in Splunk Enterprise Security results in a broken URL.
2023-07-17SOLNESS-35888Asset and identity data does not merge as expected.
2023-07-10SOLNESS-35485Duplicate risk notables might be created for the same risk object.
2023-06-13SOLNESS-35512, SOLNESS-35031Support for Home Dashboards in ES 7.1.0 and above
2023-05-23SOLNESS-35291Threat Intelligence Framework is not passing the weights of Indicators of Compromise (IOCs).
2023-04-28SOLNESS-35335In Content Management page selecting multiple saved searches and selecting "Enable" or "Disable" causes the entire page to freeze.
2023-04-12SOLNESS-34365Enabling the selection for saved searches breaks the Content Management page.
2023-04-05SOLNESS-34719Performance of Enterprise Security might be impacted if the modular_action_invocations takes too long to run.
2023-04-04SOLNESS-35031, SOLNESS-35512ES Upgrade from 7.0.2 to 7.1.0 broke the Home Dashboard setup for all "rootNode=view"
2023-03-16SOLNESS-35064Search cannot be added to the Splunk Enterprise Security analytic story.
2023-02-28SOLNESS-34979Threatlists might be re-downloaded every 30-60 seconds.