Issues fixed in MarkLogic Server 12.0.3
- Last Updated: August 5, 2026
- 1 minute read
- MarkLogic Server
- Documentation
Released: July 6, 2026
The following issues have been addressed in this release:
| Bug ID | Details |
|---|---|
| MLE-31026 | When invoking a REST transform with result=ignore, MarkLogic incorrectly threw a type validation error if the transform function returned an invalid type. |
| MLE-30700 | When Auto Logout is enabled, Query Console may redirect to a logout URL that returns a "Page Not Found" error instead of completing the logout flow. |
| MLE-30696 | In MarkLogic Server 12.0.2, custom REST extensions invoked through the REST Client API could run as an internal REST transform user instead of the authenticated calling user. This could cause extensions that rely on the caller's roles, privileges, or permissions to fail or produce unexpected results. |
| MLE-30693 | During upgrade, user-created REST API App Servers on ports other than 8000 could have their URL Rewriter setting reset from a custom REST API rewriter to the default /MarkLogic/rest-api/rewriter.xml. This could cause applications depending on the custom rewriter configuration to stop working as expected. |
CVEs Addressed
- CVE-2026-7326
- CVE-2026-7327
- CVE-2026-7329
- CVE-2026-7557
- CVE-2026-8709
- CVE-2026-9190
- CVE-2026-9192
- CVE-2026-9193
- CVE-2026-9195
- CVE-2026-9203