Remediation for Security Exposure Management release notes

  • Release version: Store
  • Updated August 6, 2026
  • 3 minutes to read
  • Summarize
    Summarized using AI
    This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.

    Summary of Remediation for Security Exposure Management Release Notes

    The Remediation for Security Exposure Management application helps security teams efficiently group and manage exposure findings across the Unified Security Exposure Management (USEM) suite. It centralizes remediation tasks within the Security Exposure Management (SEM) Workspace, supporting consistent workflows for infrastructure, application, container, and compliance exposures. The application offers manual and automated task creation via remediation task rules managed from the Admin Console.

    Show full answer Show less

    For customers upgrading from Vulnerability Response to USEM, it is essential to use the Migration Assistant for a safe transition. Customers not moving to USEM should select versions prior to 30.x.

    Key Features and Improvements

    • Task Management Enhancements: Remediation tasks now map one-to-one with findings for precise tracking and ownership.
    • Admin Console Upgrades: Includes a Users and Groups list view for centralized role and access management.
    • Bulk and Manual Task Creation: Manual tasks can be created with an “All” selection mode to include all eligible findings at once.
    • AI-Powered Approver Recommendations: Available in the workspace for eligible service tiers, improving approval efficiency.
    • Configuration and Export: SEM workspace configurations (exception rules, exclusion rules, remediation task rules, etc.) can be exported via update sets to facilitate promotion across environments.
    • Improved Performance and Stability: Significant performance improvements for remediation task rule evaluation and lookups, including query limits to enhance stability.
    • User Interface and Usability: Refreshed approval forms and exception management pages for clearer interaction and better visual presentation. Inline notifications inform users of configuration save success or errors.
    • Integration Support: Integration drill-downs are enabled in the new integration framework, with explicit messages when integrations are unsupported.
    • Bulk Deferral Validation: Validates items before deferral and notifies users of exclusions to prevent errors.

    Security Fixes and Bug Resolutions

    • Resolved issues where vulnerable items remained linked to remediation tasks after rule conditions changed during re-evaluation.
    • Fixed delegated approvers’ access to assigned vulnerability items, removing previous security constraints.
    • Corrected UI and functional bugs including approval button states, drag-and-drop across workspace views, custom column grouping, and filtering issues.
    • Addressed a security vulnerability related to query handling.
    • Ensured consistent messaging, button states, and read-only enforcement across administration forms regardless of user role.
    • Configuration records now use valid unique identifiers shipped with the product.

    Practical Benefits for ServiceNow Customers

    • Centralized management of remediation tasks across multiple exposure types enhances operational efficiency and consistency.
    • Improved UI and AI-driven recommendations streamline approval workflows and task handling.
    • Performance optimizations reduce delays in rule re-evaluation and task lookups, supporting faster security response.
    • Exportable configurations simplify migration and environment promotion processes.
    • Security fixes and access improvements ensure compliance and secure handling of sensitive data.

    Version history for the ServiceNow® Remediation for Security Exposure Management application on the ServiceNow Store.

    Important:
    For details on system requirements and family compatibility, view the application listing on the ServiceNow Store website.
    Version 31.0.6 - August 2026
    Fixed: Security fixes
    Version 31.0.3 - July 2026
    • Fixed:
      • Remediation task rules now correctly unlink findings that no longer match the rule's conditions when rules are re-evaluated
      • Significantly improved the performance of the "Reapply remediation task rules" operation
      • Remediation task lookups now correctly apply query limits
      • Configuration records shipped with the product now use valid unique identifiers
    Version 31.0.2 - June 2026 (USEM)
    • Fixed:
      • Resolved an issue where vulnerable items remained linked to a remediation task after the task's rule conditions no longer matched during a re-evaluate operation.
      • Improved performance and stability of remediation task lookups by applying a result limit during retrieval queries.
    Version 31.0.1 - April 2026
    • New:
      • Remediation tasks in the Security Exposure Management (SEM) workspace now map one-to-one with findings for more precise tracking and ownership.
      • The Admin console now includes a Users and Groups list view for centralized access and role management.
      • Manual remediation tasks can now be created for remediation orders using "All" selection mode to include all eligible findings at once
      • AI-powered approver recommendations are now available in the workspace, suggesting approvers based on context (available to eligible service tiers).
    • Changed:
      • SEM workspace configurations including exception rules, exclusion rules, remediation task rules, rollup calculators, and exception management settings can now be exported to update sets for easier promotion across environments.
      • System properties in the Security Exposure Management workspace are now modularized for simpler management directly from the Administration console.
      • The advanced settings page now shows inline success and error notifications when configuration changes are saved or fail.
      • Approval forms have been updated with cleaner layouts and more consistent field behavior.
      • Exception management pages have been refreshed with clearer interactions and a more refined visual presentation.
      • The integrations page now displays an explicit message when an integration is not supported, replacing an ambiguous empty stateIntegration drill-down is now supported in the new integration framework, enabling navigation into integration details from the workspace.
      • Bulk deferral now validates that selected items are not already deferred before processing, and notifies users when items are excluded.
    • Fixed:
      • Delegated approvers can now correctly view vulnerability items assigned to them, resolving a security constraint that previously blocked access.
      • The New Risk Rule form no longer pre-fills with values from a previously viewed rule.
      • The "Approve/Reject" button is no longer incorrectly disabled during approval or rejection actions.
      • Approval level records now display the full set of approver field choices after upgrading to v30.
      • Now Assist approval recommendations now display correctly in dark mode.
      • Drag-and-drop interactions now work correctly across all supported workspace views.
      • Custom columns can once again be added to the grouping criteria of remediation task rules.
      • The Condition field in remediation task rules no longer refreshes on every keystroke, improving the rule authoring experience.
      • The "Applies to" column filter in the USEM administration page now correctly filters tag-type fields.
      • A security vulnerability in query handling has been resolved.
      • Multiple layout, spacing, and field visibility issues across administration forms have been corrected.
      • Messaging, button states, and read-only enforcement in administration rule forms now behave consistently regardless of the user's role.
    Version 30.2.0 - January 2026
    • Note:
      This app version is intended for Unified Security Exposure Management (USEM), a significant architectural upgrade to the Vulnerability Response applications. If you are currently using Vulnerability Response and upgrading to USEM for the first time, you must use the Migration assistant for Unified Security Exposure Management to ensure a safe and successful upgrade. If you do not intend to upgrade to USEM, please select a version below 30.x when installing or upgrading.
    • The Remediation for Security Exposure Management application enables security teams to efficiently group and manage exposure findings across all Unified Security Exposure Management (USEM) applications into remediation tasks.
    • Tasks can be created manually or automatically usingRemediation Task Rules—all defined centrally in theAdmin Console within the Security Exposure Management (SEM) Workspace. This ensures consistent remediation workflows across infrastructure, application, container, and configuration compliance exposures.