SR-A2361 · Issue 212842
XSS fix updated for IAC with CSRF tokens
Resolved in Pega Version 7.2
After updating to address a potential XSS security issue, some problems were found with using IAC with CSRF tokens in the pathinfo. Additional checks have been added to handle this scenario.
SR-A2361 · Issue 210192
XSS fix updated for IAC with CSRF tokens
Resolved in Pega Version 7.2
After updating to address a potential XSS security issue, some problems were found with using IAC with CSRF tokens in the pathinfo. Additional checks have been added to handle this scenario.
SR-A7513 · Issue 219783
Corrected timing of OnMessage firing on restart
Resolved in Pega Version 7.2
MDB Listeners that have been processing incoming messages successfully were becoming problematic when the JVM was restarted. At that time, PRJMSListener's onMessage() started to process JMS messages from the queue even when the PegaRULES engine had not successfully initialized, resulting in large numbers of repeating error messages in the log file. In order to resolve this, the PRJMSListener.java has been updated to check the node initialization in OnMessage() itself instead of invoke() of JMSListenerServant.
SR-A6449 · Issue 214540
Clarified page handling for Idle Processing activity
Resolved in Pega Version 7.2
The Idle Processing activity in file listener was throwing a NullPointerException(NPE) when it had the Obj-Browse/RDB-Open method in it. This has been corrected by modifying the code to send the primary page and a parameter page if null page values are encountered.
SR-A7298 · Issue 215177
Clarified page handling for Idle Processing activity
Resolved in Pega Version 7.2
The Idle Processing activity in file listener was throwing a NullPointerException(NPE) when it had the Obj-Browse/RDB-Open method in it. This has been corrected by modifying the code to send the primary page and a parameter page if null page values are encountered.
SR-A8445 · Issue 220085
Ensured display of empty user worklist section in hybrid client
Resolved in Pega Version 7.2
The user worklist section was not being displayed in the hybrid client if the login had no assignments (the WL(D_pyUserWorkList pxresultcount is zero) and the crewleaderworklist harness had a repeating dynamic layout. This has been corrected.
SR-A8217 · Issue 223611
Added server retry for push notifications in Sales Automation 7.14 / SFADevelopment for Android
Resolved in Pega Version 7.2
Push Notifications were not working on Sales Automation 7.14 / SFADevelopment for Android. This was traced to an error returned by the GCM server during registration, and the code has been modified to re-try the registration process if a failure is encountered.
SR-A12537 · Issue 224733
Optimistic locking honors OfflineEnabled function
Resolved in Pega Version 7.2
After upgrade, if a top level case type rule was checked out through the Case Explorer by opening the Case Designer and then changing the locking mode to Optimistic, the value reset back to Default after check-in. This was an issue with the pyOfflineEnabled setting being honored, and has been corrected.
SR-A7642 · Issue 218030
Code added to support automated unit tests on Microsoft Internet Explorer 11
Resolved in Pega Version 7.2
When attempting to create automated tests for a decision table, the dialog to create the test cases was coming up without the version dropdown box. This was traced to a null object being returned for the WebWB_New_Available rule due to Element.all support being dropped by Microsoft Internet Explorer 11. To resolve this, that rule has been modified in order to work on all versions of Microsoft Internet Explorer .
SR-A10487 · Issue 221146
Resolved BIX command line NPE for username/password
Resolved in Pega Version 7.2
Attempting to run a BIX extraction from the command line without specifying -a/-p (username and password) parameters failed with a NullPointerException. This has been corrected.