This file provides information about the VERA Web Portal
Docker Image Information
Known Issues and Limitations
High-level VERA Version
Web Portal Version
(Can be verified on the "Versions" screen in the web portal.)
Cannot save updated user information until switching cursor focus
Fixed the user profile page so that the Save button is available without focusing on other fields.
Web portal is vulnerable to Cross Frame Spoofing (CFS)
Fixed an issue to prevent the web portal from being opened in an iframe, which will prevent third-party scripts from running in both Internet Explorer and popular browsers.
Filter and Refresh icons disappear when selected
Fixed an issue where the Filter and Refresh icons disappear when selected but not hovered on for tables.
Error message not displayed when attempting to add a project to a second domain
Fixed an issue where an error message was not being displayed when an admin attemted to add a project to more than one domain.
Approval Queue does not load when user is in domain with project containing special character
Fixed an issue withretrieving fields from the database which include special characters for regex.
All buttons are greyed out after adding a project to a domain
Fixed an issue where all buttons were disabled after adding a project to a domain.
VERA timeout when trying to approve +125 tasks in the approval queue
Added a progress bar for approving many entities at the same time from the Approval Queue.
Routing Test Execution for Approval fails if test has Xray custom test step fields
Fixed an issue with Test Execution route will fail if test has any of these custom test step fields.
User should not be allowed to login from unsupported browser
Prohibited the use of the portal from Internet Explorer.
VERA Admin is unable to set user to None for Identity Provider
Resolved an issue where the user can`t set user to None for Identity Provider.
Web Portal is vulnerable to HTML injection attacks
Implemented sanitize feature on all incoming data (using third-party library sanitize-html).
Inconsistent display of qTest steps in VERA for test cases imported from Excel
Resolved by VS-1337
Web Portal returns an HTTP 500 status code when User-Agent header is missing
Fixed an issue when GET request without "User-Agent" header returned HTTP status code 500.
Approving issues opened in separate tabs approves last issue opened
Fixed an issue where when assignedTask was defined at the beginning of the load function, which caused an incorrect approval (wrong assigned Task) when many tabs were open.
VERA Signature ID is displaying in Reviewer field instead of full name and system name
Fixed an issue when the first task is being returned without processing the rest of the tasks in the taskgroup therefore secondary tasks are returning the VERA signature ID without going through the rest of the processing to convert it to the expected full name and system name.
Revision History is not numerically sorted
Fixed an issue in VERA where the Revision History was not sorted correctly numerically (descending).
Issue with special characters in qTest attachment names
Fixed handling of attachments with special characters in the filenames.
VERA relies solely on file extensions to recognize media types
VERA was using only the file extension and used content-type and file extension together to display image attachments. VERA can display images that don't have a file extension (mostly pasted screenshots).
Administrator can configure the minimum required length of passwords
Addedthe ability for an administrator to configure the minimum required length of passwords.
Administrator can configure the minimum required password complexity rule
Addedthe ability for an administrator to configure the minimum required complexity of user passwords.
Remove the Approval Queue feature toggle
Approval Queue no longer need to be explicitly enabled/disabled when the feature is or is not wanted.
Remove the VERA Domains feature toggle
VERA Domains feature no longer needs to be explicitly enabled/disabled when the feature is or is not wanted.
The author does not see approval links on the details page for records they authored
Added the ability to prevent users from seeing approval links on the details page for records they authored (when author exclusion is enabled).
System enforces configured minimum required password complexity rules
Added the ability for an administrator to configure the minimum required complexity of user passwords.
SAML Password Auth Context should be configurable
Added a method to configure the Password Auth Context instead of hardcoding the 1.0 Password Auth Context.
Ability to display Author in VERA Record
Added Author field in Activity HistoryandPrint View of the VERA Record when author exclusion is enabled.
System enforce the minimum required length of passwords
Added the ability for an administrator to enforce the minimum required length of passwords.
Update compatibility for WP
Updated compatibility to support multiple authors in author exclusion feature.
User Administrator role can see Signature Verification Failure Report and Re-verify
A User Administrator can access the Signature Verification reporting section of the Administration Portal. This feature should be limited to System Administrators.
Admin can't remove a project from domain if project name contains regex
A project created with regex characters cannot be removed from a domain once it is added. This also causes issues with displaying tasks in the approval queue for a user
Import User modal/page does not display a confirmation when a file is uploaded
No confirmation is displayed following the upload of a user import.
An Admin cannot blank a user's email address
An administrative user cannot update a user to have no email address. This is due to validation on the submitted changes for a user requiring an email address.
A misleading error message is displayed when VERA cannot apply a final approval
VERA will display a misleading error message when it fails to transition a Jira issue in the workflow. The error message displayed to the user will indicate that there is a connectivity problem, even if it's actually a configuration problem.
Clicking the Import Button on the user import modal without first selecting a file causes the form to break
The Import user form buttons are disabled, but nothing happens and the page has to be refreshed when clicking the Import Button on the user import modal without first selecting a file.
Unusual Admin session time out
When the admin session times out initially (after 20 min), the web portal is supposed to use the refresh token to get another valid token.
Revision is blank in qTest Run Record Details for History entries
The Revision field is blank for qTest Test Run records in the Record Details for a History entry.
Text in html tag format is not displayed in VERA record name field
Test name with text in html tag format will omit the "tagged" text in VERA record name field
Text in html tag format is not displayed in VERA Domain or Description field
In VERA, text in html tag format is not displayed in VERA Domain or Description field.
Text in html tag format is not displayed in VERA Full Name field
In VERA, Text in html tag format is not displayed in VERA Full Name field.