What's new in this release of Server Automation

This release of Server Automation contains the following updates.

Server Automation 9.5.76 site version 101

This table lists the changed or new features and enhancements included in BigFix® Server Automation 9.5.76
Updates Description
Features
  • SA Console: Enhance Server Automation email notifications to provide improved visibility and integration with the BigFix Console at the Plan Engine
  • SA REST API:
    • Enhance Server Automation email notifications to provide improved visibility at the Plan Engine using SA REST API
    • Enhancements for Enabling AIX LPAR Provisioning from Cloud Environments
Security Enhancements
  • CVE-2025-56200/CVE-2025-12758: Validation bypass vulnerability, upgrade to validator-13.15.22
  • CVE-2025-64718: js-yaml parser vulnerability, upgrade to js-yaml- 4.1.1
  • CVE-2025-15284: INC-2025-027: Security Alert: High, Affecting qs: Query string parser library
  • CVE-2026-25639: INC-2026-028: High: Affecting AXIOS (NPM)
  • CVE-2026-26996: High vulnerability: RC build whitesource scanning (Minimatch)
  • CVE-2026-27904: High vulnerability (Minimatch)
  • CVE-2026-1188: Upgrade IBM Semeru Open Runtime from 8.0.372.0 to 8.0.482.0 (Security Update – Jan 2026)
  • CVE-2026-33228: Affecting flatted (NPM)
  • CVE-2026-27601: SA REST Node: High: Affecting underscore (NPM)
Defect Article addressed
  • KB0128424: Server Automation REST API does not allow specifying/customizing TLS Cipher lists
  • KB0129384: Plan Engine unable to send email

Additional information about this release

Published site and components version:
  • Server Automation site version: 101
  • Server Automation PlanEngine: 9.5.76
  • SA REST API version: 9.5.76