The following issues were fixed in WS_FTP Server 2022.0 (8.8).

ID

Category

Fixed Issue

12244

Database

Fixed an issue which caused an error connecting to SSH/FTP after database migration from PostgreSQL to MSSQL.

12769

Web Transfer Module

Web Transfer Module now successfully opens as part of application pool creation.

6315, 6332, 12240, 15175, 15178, 15179, 15184, 15185

Server, Security

Addressed Cross-Site Request Forgery (CSRF) issues in WS_FTP Server Administrative interface.

15168, 15181, 15182, 15183, 15186, 15187, 15188

Server, Security

Addressed cross-site scripting (XSS) issues in WS_FTP Server Administrative interface.

6160

Server, Security

The Use Local Time option is respected.

6293

Server, Database

Fixed an issue which caused an error connecting to SSH/FTP after database migration from PostgreSQL to MSSQL.

6351

Server, Web Admin

Text generates correctly when logging in to WS_FTP Server.

12345

Server, Installer

The installer retains the given location of PostgreSQL.

12548

Server, WTM

A users full name is displayed when assigning user rights in Web Transfer Module.

12751

Server, Security

The default cipher sorting is strongest to weakest.

12773

WTM, AHT

The bootstrap.js dependency was updated to prevent a security vulnerability.

15122

Server

New and updated encryption algorithms ensures improved security.

15151

WTM, AHT

The Moment.js dependency was updated to prevent a security vulnerability.

15152

WTM, AHT

The Loadash dependency was updated to prevent a security vulnerability.

15166

Server, SSH

Version details are not disclosed in the banner information.

15170

Server, Web Admin

The assigned level of user permissions is respected.

15260

Server, Security

Addressed Cross-Site Request Forgery (CSRF) issues in WS_FTP Server Administrative interface.

19457

Installer

WS_FTP Server successfully installs following uninstalling the application with the Keep Configuration Data option selected.

15361

Server, Database

The PostgreSQL database was updated to 14.5. This update addressed CVE-2022-2625 and prevented other security vulnerabilities.