Hotfix TIB_mftccis_8.4.4_HF-001 can be downloaded from TIBCO Support Portal (https://support.tibco.com).
You will need to provide your TIBCO Support Portal credentials. Once logged in you can download the hotfix by selecting the “Downloads” -> “Hotfixes” option. Then go to “/AvailableDownloads/MFT/CommandCenter-InternetServer/8.4.4/” to download the hotfix.
The .zip file has the Readme file inside. Please unzip the file and review the Readme file for instructions on how to apply the hotfix.
================================================================================
Closed Issues in 8.4.4_HF-001 (This Release)
MFCC-9375
Tomcat is upgraded to version 9.0.104.
MFCC-9267
Upgrade commons-vfs2-2.9.0.jar to commons-vfs2-2.10.0.
MFCC-9264
eddsa library is removed.
MFCC-9252
xmlgraphics-commons is upgraded to version 2.7.
MFCC-9251
wp-jquery-update-test-1.0.2 is replaced with jquery-ui-1.13.0.
MFCC-9250
woodstox-core is upgraded to version 6.4.0.
MFCC-9249
velocity is upgraded to version 2.3.
MFCC-9248
poi-ooxml is upgraded to version 5.2.3.jar.
MFCC-9247
moment js is upgraded to version 2.29.4.
MFCC-9246
kotlin-stdlib is upgraded to version 1.6.0.
MFCC-9245
jersey-common is upgraded to version 2.37.
MFCC-9244
highcharts js is upgraded to version 9.0.0.
MFCC-9243
gson is upgraded to version 2.8.9.
MFCC-9019
JSON Injection possible in the file transfer servlet.
MFCC-9016
When data is formatted incorrectly REST calls are returning information about the library used.
MFCC-9013
In admin REST calls validation is occurring before authorization so data can be leaked.
MFCC-9010
Rest calls are not checking rights properly.
MFCC-8894
bctls-fips is upgraded to version 1.0.19.
MFCC-8893
xmlsec is upgraded to version 3.0.4.
MFCC-8892
commons-configurations is upgraded to version 2.10.1.
MFCC-8888
nimbus-jose-jwt is upgraded to version v9.37.3.
MFCC-8884
jetty-http is upgraded to version 9.5.54.
MFCC-8825
User can execute Admin and Transfer functions even when logins fail due to the User definition "Restrict IP Address" parameter.
MFCC-8782
When a partner PGP encrypts a file using the RSA PGP Public Key "Master Key", PGP decryption fails with error: "secret key for message not found."
MFCC-8781
batik is upgraded to version 1.17.
MFCC-8780
standard taglibs library is upgraded to version 1.2.5.
MFCC-8779
Alerts are executing twice.
MFCC-8778
When Command Center updates a DNI Template that contains a special character (ex: é), the template is corrupted.
MFCC-8777
After upgrading to Tomcat 9.0.91 Command Center and Internet Server did not shutdown.
MFCC-8746
protobuf-java library is upgraded to version 3.25.5.
MFCC-8726
Apache Hadoop Common is upgraded to version 3.4.0.
MFCC-8725
Struts is upgraded to version V6.7.0.
MFCC-8704
Spring Beans and Spring Core are upgraded to version V5.3.39.
MFCC-8508
Maverick SSH Client and Server are upgraded to version v1.7.60. maverick-common is upgraded to version v1.4.31.
MFCC-8485
Scheduler transfer creating traces although all traces disabled on CC.
MFCC-8144
Connections to SSH servers can fail with the error "Strict KEX mode
encountered a message that is not permitted at this time generated an error."
MFCC-8113
okhttp3 is upgraded to version 4.9.3.
================================================================================