Fixed issues
The following tables include information on key issues that have been fixed in releases of Splunk Enterprise Security.
Splunk Enterprise Security 8.3.0 fixed issues
A list of issues that are fixed in this version of Splunk Enterprise Security.
| Date resolved | Issue number | Description |
|---|---|---|
| 2025-11-05 | SOLNESS-52800 | Error message appears while testing a detection: "List index out fo range. Please contact Splunk Support" |
| 2025-10-24 | SOLNESS-52735 | Error message appears in event-based detection editor when previewing or testing bugs because the entity count is wrong |
| 2025-10-01 | SOLNESS-52496 | Detection testing fails for ESCU default detections |
| 2025-09-17 | SOLNESS-51951 | Diff comparison for detections is not populating information for restricted environments |
| 2025-10-09 | SOLNESS-50696 | Detection versioning duplicate check doesn't always work, causing duplicate detection versions |
| 2025-10-31 | SOLNESS-47185 | ess_analyst user not able to edit event-based detections after upgrade to Enterprise Security 8.x |
| Date resolved | Issue number | Description |
|---|---|---|
| 2025-11-09 | BLUERIDGE-20129 | Automation history not loading |
| 2025-11-07 | BLUERIDGE-17527 | Enterprise Security blocks fail when the finding does not exist on Splunk SOAR |
| 2025-10-31 | BLUERIDGE-17532 | Refresh analyst queue table needed to see a finding that's been manually added |
| 2025-10-27 | BLUERIDGE-19770 | Notes are not maintaining side panel width and are no longer scrollable |
| 2025-10-25 | BLUERIDGE-19304 | Intermediate findings are being generated with the incorrect timestamp |
| 2025-10-24 | BLUERIDGE-19679 | Analyst queue settings for "Notes Required" is not visible |
| 2025-10-23 | BLUERIDGE-19572 | "No investigation found" screen shows infinite loader |
| 2025-10-22 | BLUERIDGE-17698 | Analyst queue interface doesn't reflect changes when you remove findings from an investigation |
| 2025-10-21 | BLUERIDGE-18769 | Markdown links are not clickable |
| 2025-10-15 | BLUERIDGE-17699 | Changing the status of a finding or investigation is not reflected in the analyst queue without a refresh |
| 2025-10-09 | BLUERIDGE-19557 | Changing the status of a finding or investigation from the side panel or investigation page gives a 400 Bad Request error |
| 2025-10-09 | BLUERIDGE-17627 | Unable to remove finding from investigation with 999+ findings |
| 2025-09-15 | BLUERIDGE-19067 | Suppression not working on saved views after upgrading from 7.3.4 to 8.2.1 |
See also
For fixed issues in Splunk SOAR (Cloud), see Fixed issues for Splunk SOAR (Cloud).