Patches v8.6.6
SigningHub-v8.6.6-RR-Win64-Accumulative-Patch-08Sep2026
Security Improvement
- Enhanced Integration Link Security (SHE-62976)
- SigningHub enhances the security of integration links.
- Enhanced SAML Authentication Security (SHE-62976)
- SigningHub enhances the security of SAML authentication.
- Enhanced Microsoft Authentication Security (SHE-62976)
- SigningHub enhances the security of Microsoft authentication.
Important System Changes
- Hard-coded credentials are no longer supported for Integration Link decryption.
- SAML fallback is no longer supported for TRANSIENT or PERSISTENT NameID formats when signature validation fails.
- A tenant ID is now required when the multi-tenant option is selected for Microsoft SSO (Office 365 and Azure AD).
SigningHub-v8.6.6-DiagnosticPatch-30Aug2024
Security Improvements
- SigningHub "Upload Library Document" API Server-Side Request Forgery (SSRF) (SHE-45960)
- The SigningHub "Upload Library Document" function has been updated to remove the file path details from the response to reduce the potential risk of Server-Side Request Forgery (SSRF) attacks.
- SigningHub Branding CSS Injection (SHE-45960)
- SigningHub Enterprise branding logic has been improved to prevent the potential use of malicious Cascading Style Sheets (CSS) injection when customizing enterprise branding.