Skip to main content

Using FME Server 2021.1 Build 21607 - win64,  we have applied the Security Update: FME Flow Privilege Escalation Vulnerability using this link

 

https://support.safe.com/hc/en-us/articles/31265482270349-Security-Update-FME-Flow-Privilege-Escalation-Vulnerability

 

but even after applying the patch and re-starting FME services and even rebooting the hosting VM we are still seeing this message!

 

 

I know it is possible to just click on X and close this notification on admin page but I noticed that other team members who didn't close the notification still seeing that on page!

Should we ask everyone to ignore it! shouldn't system automatically clear it?

The broadcast message regarding the critical severity vulnerability is designed for visibility and is not dynamically updated when the patch is applied. This means that the message will remain visible for a set period, regardless of whether the patch has been applied to your instance.
 
The steps you have completed are essential, but the presence of the broadcast message does not indicate whether the patch has been applied or not.


After you have patched, you will need to disable broadcast messages, made by Safe Software

Go to Flow > System Configuration and “Broadcast Messages”

Broadcast Messages

Rerun to home landing page, should be gone 

 


Reply