- Site Collector Features
- Site Collector Features Introduced in 2024
- Site Collectors 2.3 (October 2024)
- Site Collectors 2.2 (September 2024)
- Site Collectors 2.1 (August 2024)
- Site Collectors 2.0 (July 2024)
- Site Collectors 1.20.0 (June 2024)
- Site Collectors 1.19.0 (May 2024)
- Site Collectors 1.18.0 (April 2024)
- Site Collectors 1.17.0 (March 2024)
- Site Collectors 1.16.0 (February 2024)
- Site Collectors 1.15.0 (January 2024)
- Site Collector Features Introduced in 2023
- Site Collectors 1.14.0 (November 2023)
- Site Collectors 1.13.0 (October 2023)
- Site Collectors 1.12.0 (September 2023)
- Site Collectors 1.11.0 (August 2023)
- Site Collectors 1.10.0 (July 2023)
- Site Collectors 1.9.4 (June 2023)
- Site Collectors 1.8.0 (May 2023)
- Site Collectors 1.7.0 (April 2023)
- Site Collectors 1.6.0 (March 2023)
- Site Collectors 1.5.0 (January 2023)
- Site Collector Features Introduced in 2022
- Site Collector Features Introduced in 2024
- Site Collector Known Issues
- Addressed Issues in Site Collector
- Site Collector 2.3: Addressed Issues
- Site Collector 2.2: Addressed Issues
- Site Collector 2.1: Addressed Issues
- Site Collector 2.0: Addressed Issues
- Site Collector 1.20: Addressed Issues
- Site Collector 1.19: Addressed Issues
- Site Collector 1.18: Addressed Issues
- Site Collector 1.17: Addressed Issues
- Site Collector 1.16: Addressed Issues
- Site Collector 1.15: Addressed Issues
- Site Collector 1.14: Addressed Issues
- Site Collector 1.13: Issues Addressed in October 2023
- Site Collector 1.11: Issues Addressed in August 2023
- Site Collector 1.9.4: Issues Addressed in June 2023
- Site Collector 1.8: Issues Addressed in May 2023
- Site Collector 1.6: Issues Addressed in March 2023
- Site Collector 1.5: Issues Addressed in January 2023
- Site Collector Issues Addressed in December 2022
- Vulnerability Remediation Policy
Vulnerability Remediation Policy
This policy describes Exabeam’s approach to addressing Common Vulnerabilities and Exposures (CVEs) in Site Collector.
The Site Collector Core application consists of three containers: nifi, minifi, and toolkit. Each container has an OS layer, a JVM layer, and Linux utilities that are installed. A fixable CVE is defined as any CVE that has been fixed by the respective open source software community, as of the day the new Exabeam release gets ratified by engineering. Such CVE will be remediated in that release for the OS layer, JVM layer, and Linux utilities that are installed in each container.
Each container also contains software from the Apache NiFi community. NiFi is a critical operational component for the site collector and updating it requires extensive regression testing. Exabeam will update NiFi software (minor or major version as determined feasible by engineering) every quarter, and then any CVEs remediated by the Apache NiFi community as of that time will get remediated.
The CVEs that are remediated in a specific release are listed in the addressed issues section of the release notes. Any Critical CVEs that remain unresolved despite the above mentioned steps are listed in the known issues section of the release notes along with the impact.