🚀 Invicti Acquires Kondukto to Deliver Proof-Based Application Security Posture Management
100% Signal 0% Noise
Platform
Platform Overview
ASPM
API Security
DAST
SAST
SCA
Container Security
AI-Powered AppSec
Cost Savings Calculator
Features
Solutions
Manage Vulnerabilities
Automate Security Workflows
Track AppSec KPIs
Manage Open Source Risk
Pricing
Why Invicti
About Us
Case Studies
Contact Us
Careers
Resources
Resource Library
Blog
Webinars
White Papers
Podcasts
Invicti Learn
Live Training
Partners
Documentation
Get a demo
Home
/
Invicti Enterprise On-Premises
/
v25.11.0 - 26 November 2025
Invicti Product Release Notes
Invicti Enterprise On-Demand
Invicti Enterprise On-Premises
Invicti Standard
Invicti Application Security Platform
November 26, 2025

v25.11.0 - 26 November 2025

New features

  • The Secrets screen now supports selecting and referencing secrets from SEM integrations in addition to manually entered name–value pairs. This allows more secure and centralized secret management
  • Added WebLogic support for JAVA Shark sensor

Improvements

  • Replaced old POST deletion methods with standard DELETE endpoints for a more consistent API. The POST endpoints are now deprecated—please update your integrations.
  • Masked sensitive data in request/response details

Resolved issues

  • Fixed an issue showing the wrong Vulnerability Database (VDB) version
  • Fixed a cache cleaning issue
  • Fixed Intel instance assignment issue for On-prem Cloud Provider
  • Fixed an issue for 3-legged authorization code flow
  • Added RegEx validation to prevent invalid patterns causing scan failures
  • Agent auto updater can use encrypted proxy credentials in the appsettings.json.
  • Fixed Discrepancy in the permission count of the Roles.
  • Addressed SSL errors in certificate-based environments by adding support for the IgnoreSslCertificateErrors parameter
  • Fixed Unable to Load Scan Session & Unable to Find Scan Files error
  • Containerized Agents stucking auto update issue resolved.

Notes for Verifying the Hash Value for Package Integrity in Invicti Enterprise On-Premises

‍The hash value for the "25.11.0.zip" file is provided below. You can verify the integrity of the file by checking its hash value using one of the outlined methods:‍

Release Package Hash Value: BF5E9AF5C09CB7D4A3318F96B1B9D5B7B7881EAE7D56066294A5A6BCB84C0FD1‍

Methods to Verify the Hash Value:

PowerShell (Windows):
‍
Get-FileHash -Path "25.11.0.zip" -Algorithm SHA256
‍
Command Prompt (Windows):
‍
certutil -hashfile "25.11.0.zip" SHA256
‍
Linux or macOS:
‍
sha256sum "25.11.0.zip"

‍

Invicti Security Corp
1000 N Lamar Blvd Suite 300
Austin, TX 78703, US
© Invicti {year}
Resources
FeaturesIntegrationsPlansCase StudiesRelease NotesInvicti Learn
Use Cases
Penetration Testing SoftwareWebsite Security ScannerEthical Hacking SoftwareWeb Vulnerability ScannerComparisonsOnline Application Scanner
Web Security
The Problem with False PositivesWhy Pay for Web ScannersSQL Injection Cheat SheetGetting Started with Web SecurityVulnerability IndexUsing Content Security Policy to Secure Web Applications
Comparison
Acunetix vs. InvictiBurp Suite vs. InvictiCheckmarx vs. InvictiProbely vs. InvictiQualys vs. InvictiTenable Nessus vs. Invicti
Company
About UsContact UsDocumentationCareersResourcesPartners

Invicti Security is changing the way web applications are secured. Invicti’s dynamic and interactive application security products help organizations in every industry scale their overall security operations, make the best use of their security resources, and engage developers in helping to improve their overall security posture.

LegalPrivacy PolicyCalifornia Privacy RightsTerms of UseAccessibilitySitemap
Privacy Policy