---
sourceDocument: Store Version History Release Notes
sourceDocumentLink: https://www.servicenow.com/docs/r/store-release-notes

 Release :

    - store

ft:locale :

    - en-US

ft:publication_title :

    - Store Version History Release Notes

ft:clusterId :

    - rnst

bundleId :

    - rnst


---

# Invicti Application Vulnerability Integration release notes

# Invicti Application Vulnerability Integration release notes {#ariaid-title1}

Release version: Store  
Updated September 10, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 minutes to read
Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Invicti Application Vulnerability Integration release notes

The Invicti Application Vulnerability Integration application on the ServiceNow Store enables seamless import and management of application vulnerability data from Invicti Platform into ServiceNow's Vulnerability Response.
This integration supports automated synchronization of application scan data and vulnerability findings, enhancing vulnerability lifecycle management within the ServiceNow AI Platform.
Show full answer Show less  

## Key Features

* **Invicti Platform API Support:** Direct integration with Invicti Platform cloud services using three new jobs---Application Integration (imports scanned applications), Scan Integration (imports scan metadata), and Vulnerability Integration (imports vulnerability findings as Application Vulnerable Items or AVITs).
* **Application Lifecycle Management:** Automatically deactivates discovered applications and closes associated AVITs in ServiceNow when applications are deleted or decommissioned in Invicti Platform, ensuring up-to-date vulnerability inventories without manual intervention.
* **Improved Configuration Security:** The Invicti Configuration Page enforces scope alignment by warning users when accessing configurations from a different scope and blocking credential saves from mismatched scopes to prevent security misconfigurations.
* **Enhanced Data Handling:** The integration now detects and properly handles empty or whitespace-only CVSS vector strings from Invicti, preventing import errors and ensuring smooth vulnerability item creation even when CVSS data is missing.
* **Date Format Customization:** Administrators can specify date formats for imported data directly from the Invicti configuration screen within ServiceNow AI Platform.
* **Integration Monitoring:** Provides detailed visibility into integration runs including total processing times, average pre- and post-integration process durations, and run reports for performance tracking and troubleshooting.
* **Initial Vulnerability Response Integration:** Supports import of applications and vulnerabilities into Vulnerability Response, leveraging its prioritization and remediation capabilities for application vulnerabilities.

## Key Outcomes

* Automated and reliable synchronization of Invicti application vulnerability data into ServiceNow, improving vulnerability tracking and response efficiency.
* Reduction of manual cleanup and administrative overhead through lifecycle management that deactivates and closes outdated vulnerabilities automatically.
* Increased security and configuration integrity by enforcing scope alignment and preventing credential mismanagement.
* Improved data accuracy and error handling during vulnerability import processes, especially related to CVSS vector data.
* Enhanced operational visibility into the integration process, enabling better monitoring and optimization of data imports.  
Version history for the Invicti Application Vulnerability Integration application on the ServiceNow Store.
Important:  
For details on system requirements and family compatibility, view the application listing on the [ServiceNow Store](https://store.servicenow.com/sn_appstore_store.do#!/store/home) website.

## Version history

Version 30.4.2 - September 2026 (USEM)
:   Fixed: An issue with failed Invicti application vulnerability item (AVIT) imports that resulted in a "Cannot read property 'length' from null" error. This error occurs if Invicti reports an empty or whitespace-only CVSS vector string
    for a finding (AVIT). Empty/whitespace CVSS vector values are now correctly detected before an attempt is made to parse them, which prevents the error. Application vulnerability items are imported successfully, and CVSS-derived
    fields are not populated for findings (AVITs) if no CVSS vector data is provided.

Version 30.2.4 - July 2026 (USEM)
:
    * New:
      * Invicti Platform Integration
        * Added support for the Invicti Platform APIs and introduced three new integration jobs that connect directly to the Invicti Platform cloud service:
          * Application Integration --- Imports the list of applications being scanned in Invicti Platform into ServiceNow as discovered applications.
          * Scan Integration --- Pulls scan records from Invicti Platform, providing scan metadata to correlate with vulnerability findings.
          * Vulnerability Integration --- Imports application vulnerability findings from Invicti Platform and creates or updates application vulnerable items in Vulnerability Response in your ServiceNow AI Platform.
      * Application lifecycle management --- When an application is deleted or decommissioned in Invicti Platform, your ServiceNow AI Platform automatically deactivates the corresponding discovered application and closes all associated application vulnerable items (AVITs), keeping your vulnerability inventory accurate without manual cleanup.

Version 30.1.3 - April 2026 (USEM)
:
    * Fixed:
      * Fixed Invicti Configuration Page cross-scope credentials saving issue. You will now receive a warning when opening Invicti configurations page from a scope different than the one associated with the Invicti account. This ensures scope alignment before accessing sensitive configuration data. Additionally, an error displays if you attempt to save credentials from a mismatched scope, preventing potential security misconfigurations.
      * Fixed warning messages in Invicti Application Vulnerable Item Integration caused by populating a threat field that does not exist in the Application Vulnerable Item table.
      {#store-secops-rn-invicti-app-vuln-integration__ul_mqb_fr4_53c}

Version 1.2.1 - November 2024
:   Changed: Improvements to support a date format that you can specify from the Invicti configuration screen in your ServiceNow AI Platform instance.{#store-secops-rn-invicti-app-vuln-integration__latest-store-secops-rn-invicti-app-vuln-integration}
{#store-secops-rn-invicti-app-vuln-integration__latest-store-secops-rn-invicti-app-vuln-integration}

Version 1.1.1 - May 2024
:   Changed: View details such as total processing times, average times for pre- and post-integration run processes, and reports on the integration run records.

Version 1.0.2 - February 2024
:   Vulnerability Response Integration with Invicti imports applications and application vulnerabilities using Application Vulnerability Response. Application Vulnerability
    Response is a feature in Vulnerability Response that helps you prioritize and remediate application vulnerabilities.

