Note:
This app version is intended for Unified Security Exposure Management (USEM), a significant architectural upgrade to the Vulnerability Response applications.
If you are currently using Vulnerability Response and upgrading to USEM for the first time, you must use the Migration assistant for Unified Security Exposure Management to ensure a safe and successful upgrade. For full details, please refer to the KB2556844 and documentation before proceeding.
If you do not intend to upgrade to USEM, please select a version below 30.x when installing or upgrading.
Exception Management enables organizations to efficiently handle and document vulnerability exceptions. It provides a controlled process for requesting, reviewing, and approving exceptions to vulnerable findings, ensuring transparency and compliance. By automating workflows and capturing exception justifications, it helps reduce operational bottlenecks while maintaining risk visibility and audit readiness.
- Manual and Automated Exception Request and Approval Workflow - Streamline the process of submitting, reviewing, and approving exception requests with customizable workflows that ensure accountability and speed up decision making.
- Comprehensive Exception Tracking and Audit Trails - Maintain full visibility into all exceptions with detailed records of approvals, justifications, and timelines to support compliance and audit readiness.
- Fixed:
-
-Fixed an error ("Security constraints prevent access") that could occur when using the Request Exception button.
- Fixed an issue where deferral counts were inflated because an approval filter counted updated records as new.
-
- New:
-
- Added bulk-edit support to close false positives, update Preferred Solution and Preferred Patch, and unassign remediation owner records.
- Refreshed the UX for the Risk Adjustment and Exception Request bulk-edit experience.
- Added support for scripted approver levels in exception rules, enabling more dynamic approval routing.
- Updated the Exception Request and Modify Risk dialogs with UI improvements.
- Improved notifications triggered by risk modification changes.
-
- No additional system requirements. This update is fully compatible with existing Exception Management and Compensating Controls configurations