Combined Vulnerability Response release notes for upgrades from Yokohama to Zurich
Summarize
Summary of Combined Vulnerability Response Release Notes for Upgrades from Yokohama to Zurich
This consolidated guide covers important information, new features, changes, and upgrade considerations for ServiceNow Vulnerability Response customers moving from the Yokohama release to the Zurich release. It combines cross-family release notes to help you prepare and optimize your upgrade.
Show less
The Zurich release introduces enhancements for vulnerability integrations, remediation workflows, exception management, and overall system performance, while maintaining compatibility with third-party applications. Key upgrade tasks and deprecated features are also noted to ensure a smooth transition.
Important Upgrade Considerations
- If you do not plan to upgrade to Unified Security Exposure Management (USEM), install Vulnerability Response versions below v30.x for supported third-party integrations.
- The Missing Assets [snvulwizmissingasset] table used in the Vulnerability Response Integration with Wiz is deprecated; after upgrading to version 1.1, existing Wiz integrations must be backdated by three days and rerun.
- Refer to the Vulnerability Response Compatibility Matrix and Release Schema Changes documentation for compatibility details with Zurich.
New Features and Enhancements
- Wiz Integration Enhancements:
- Configure which Wiz Resource Types (assets) to import.
- Default activation of Host Vulnerability Backfill Integration to process previously unimported assets.
- Improved mapping of detection keys and additional asset attributes for better data accuracy.
- Manual Remediation Task Creation:
- Users with appropriate roles can manually create host remediation tasks in both Vulnerability Manager Workspace and IT Remediation Workspace, grouping selected vulnerable items for efficient remediation.
- Exception Management with Smart Assessment:
- Configure advanced, conditional questionnaires to gather detailed context during exception requests.
- Mandatory questionnaires must be completed before exception requests proceed, improving collaboration and approval clarity.
- Lookup Rules and Background Jobs:
- Discovered items inactive over 90 days are excluded from lookup rules and licensing to improve performance.
- New background job fields provide detailed processing status and time estimates.
- Support for users not following Common Service Data Model (CSDM) standards to properly mark and exclude decommissioned items.
- Tenable.cs Integration:
- Import cloud and container vulnerabilities directly from Tenable.cs.
- Setup Assistant simplifies credential configuration and integration setup.
- Scheduled imports and automated creation of vulnerable items enable continuous vulnerability management across cloud-native environments.
- Vulnerability Exposure Assessment:
- New publisher-based assessment allows prioritization by vendor (e.g., Microsoft, Red Hat) to focus remediation efforts.
- Risk Score Visibility:
- Optional system property to log risk score changes of vulnerable items in the Work notes section, enhancing auditability.
- Exception Rules Handling:
- Nightly reevaluation of exception rules unlinks invalid vulnerable items from remediation tasks and reopens deferred items as needed.
- Exception rules no longer create remediation tasks; vulnerable items are deferred directly.
- Additional Integrations and Features:
- Support for Tenable's endpoint scanning integration to retrieve scan metadata.
- New “Reopened Count” field tracks how often vulnerable items reopen.
- Out-of-the-box vendor advisories via CSAF integration for Red Hat and SUSE when Solution Management plugin is enabled.
- Granular Microsoft TVM integration allowing separate vulnerable items per recommendation.
- Enhanced state management for remediation tasks and vulnerable items improves accuracy and reduces manual effort.
- Ability for admins to manually cancel long-running Exposure Assessment background jobs.
- Configurable maximum rows in related lists to improve UI readability and performance.
- Qualys integration improvements include detection splitting per vulnerability instance and importing QVS scores for better risk context.
Deprecated Features
The Missing Assets [snvulwizmissingasset] table used in Wiz integrations is deprecated. The scheduled job for reconciling unmatched discovered items is also deprecated, replaced by manual reapplication of Lookup Rules.
Activation and Additional Information
- Request Vulnerability Response and related integrations via the ServiceNow Store.
- Quick Start Tests are provided to verify functionality after upgrades or new deployments; customize as needed for your environment.
- No changes to browser requirements, accessibility, or localization from Yokohama
Consolidated page of all release notes for Vulnerability Response from Yokohama to Zurich.
How to use this page
To help you prepare for your upgrade, we have combined the cross-family Vulnerability Response release notes onto one page. Read this summary of the new features, changes, and updated information for your product from Yokohama to Zurich.
Important information for upgrading Vulnerability Response to Zurich
Before you upgrade to Zurich, review these pre- and post-upgrade tasks and complete the tasks as needed.
| Release | Release notes |
|---|---|
Yokohama |
No updates for this release. |
Zurich |
If you are currently using Vulnerability Response, and you do not intend to upgrade to Unified Security Exposure Management (USEM), install a version below v30.x of Vulnerability Response and for upgrades to supported third-party integration applications. The Missing Assets [sn_vul_wiz_missing_asset] table used for storing assets imported by the backfill integrations for the Vulnerability Response Integration with Wiz is deprecated. If you are currently using the Vulnerability Response with Wiz integrations, after updating to new version 1.1, you must backdate any of your existing Wiz primary integrations by three days and run them. Please review more information about the Wiz integration at SecOps articles on the Security Operations Community. For more information about the released versions of the Vulnerability Response application as well as the third-party and ServiceNow applications that are compatible with the Zurich release, see the Vulnerability Response Compatibility Matrix and Release Schema Changes [KB0856498] article in the Now Support Knowledge Base. |
New features
Between your current release family and Zurich, new features were introduced for Vulnerability Response.
| Release | Release notes |
|---|---|
Yokohama |
|
Zurich |
|
Changes
Between your current release family and Zurich, some changes were made to existing Vulnerability Response features.
| Release | Release notes |
|---|---|
Yokohama |
No updates for this release. |
Zurich |
|
Removed
Between your current release family and Zurich, some Vulnerability Response features or functionality were removed.
| Release | Release notes |
|---|---|
Yokohama |
No updates for this release. |
Zurich |
No updates for this release. |
Deprecations
Between your current release family and Zurich, some Vulnerability Response features or functionality were deprecated.
| Release | Release notes |
|---|---|
Yokohama |
No updates for this release. |
Zurich |
No updates for this release. |
Activation information
Review information on how to activate Vulnerability Response.
| Release | Release notes |
|---|---|
Yokohama |
Install Vulnerability Response by requesting it from the ServiceNow Store. Visit the ServiceNow Store website to view all the available apps and for information about submitting requests to the store. For cumulative release notes information for all released apps, see the ServiceNow Store version history release notes. |
Zurich |
Install Vulnerability Response and third-party integrations by requesting them from the ServiceNow Store. |
Additional requirements
If any additional requirements were introduced or changed for Vulnerability Response we have noted them here.
| Release | Release notes |
|---|---|
Yokohama |
No updates for this release. |
Zurich |
No updates for this release. |
Browser requirements
If any specific browser requirements were introduced or changed for Vulnerability Response we have noted them here.
| Release | Release notes |
|---|---|
Yokohama |
No updates for this release. |
Zurich |
No updates for this release. |
Accessibility information
Review details on accessibility information for Vulnerability Response, such as specific requirements or compliance levels.
| Release | Release notes |
|---|---|
Yokohama |
No updates for this release. |
Zurich |
No updates for this release. |
Localization information
If there are specific localization considerations for Vulnerability Response we have noted them here.
| Release | Release notes |
|---|---|
Yokohama |
No updates for this release. |
Zurich |
No updates for this release. |
Highlight information
If there are specific highlight considerations for Vulnerability Response we have noted them here.
| Release | Release notes |
|---|---|
Yokohama |
See Vulnerability Response for more information about the Vulnerability Response application. See the Vulnerability Response Compatibility Matrix and Release Schema Changes Knowledge Base article for more information about released Security Operations applications and their version compatibility. |
Zurich |
See Vulnerability Response for more information. |