SigningHub-v8.6.6-RR-Win64-Accumulative-Patch-08Sep2026


Security Improvement

  • Enhanced Integration Link Security (SHE-62976)
    • SigningHub enhances the security of integration links.
  • Enhanced SAML Authentication Security (SHE-62976)
    • SigningHub enhances the security of SAML authentication.
  • Enhanced Microsoft Authentication Security (SHE-62976)
    • SigningHub enhances the security of Microsoft authentication.

Important System Changes

  • Hard-coded credentials are no longer supported for Integration Link decryption.
  • SAML fallback is no longer supported for TRANSIENT or PERSISTENT NameID formats when signature validation fails.
  • A tenant ID is now required when the multi-tenant option is selected for Microsoft SSO (Office 365 and Azure AD).



SigningHub-v8.6.6-DiagnosticPatch-30Aug2024


Security Improvements

  • SigningHub "Upload Library Document" API Server-Side Request Forgery (SSRF) (SHE-45960)
    • The SigningHub "Upload Library Document" function has been updated to remove the file path details from the response to reduce the potential risk of Server-Side Request Forgery (SSRF) attacks.
  • SigningHub Branding CSS Injection (SHE-45960)
    • SigningHub Enterprise branding logic has been improved to prevent the potential use of malicious Cascading Style Sheets (CSS) injection when customizing enterprise branding.