Appian Hotfixes

This page lists all the recent hotfixes for Appian 21.2.

Appian Cloud customers can refer to MyAppian to see your latest hotfix version.

For self-managed customers, all hotfixes are released as a downloadable package bimonthly, at the beginning and middle of the month. The most recent package is as of 09 Mar 2023.

Cloud-only resolved issues

The following issues have been recently resolved in Appian Cloud 21.2 as of the date indicated. These hotfixes will be available for self-managed customers in the next bi-monthly package.

21.2.2300.0 (11 May 2023)

  • Security Updates - High

  • AN-232228 - High
    Updated Jackson Databind Library

  • AN-231242 - High
    Upgraded Woodstox library

  • AN-233855 - Medium
    Upgraded Spring library

  • AN-232037 - Low
    Upgraded Liquibase to patch release v4.21.1.

21.2.2280.0 (04 May 2023)

  • Security Updates - High

21.2.2265.0 (28 Apr 2023)

  • Security Updates - High

  • AN-222925 - Medium
    Updated google-cloud-core-http library

  • AN-229971 - Low
    Reduced service manager shutdown time for customers managing Appian on Kubernetes.

21.2.2240.0 (20 Apr 2023)

  • Security Updates - High

  • AN-223083 - High
    Removed xalan library

21.2.2225.0 (13 Apr 2023)

  • Security Updates - High

  • AN-230038 - High
    Updates to Woodstox core asl library

  • AN-229036 - High
    Updates to jackson core, jackson databind, and jackson annotation libraries

21.2.2205.0 (06 Apr 2023)

  • Security Updates - Critical

  • AN-226331 - High
    Update Apache commons-fileupload library

  • AN-229993 - Medium
    For Cloud Database, increased max_input_vars value to 2000 to prevent runtime errors from occurring in phpMyAdmin.

21.2.2190.0 (31 Mar 2023)

  • Security Updates - Critical

  • AN-227900 - Low
    Updated ADS error message to include additional information to help debug the failure.

21.2.2175.0 (23 Mar 2023)

  • Security Updates - High

  • AN-227747 - High
    Updated fasterxml.jackson and google.guava

  • AN-227457 - High
    Updated Netty Library

  • AN-211751 - Medium
    Fixed an issue that caused processes to auto-archive by default ignoring the AUTOARCHIVE custom.property setting.

  • AN-221502 - Low
    Improved Kafka's logging by suppressing redundant log entries.

21.2.2155.0 (16 Mar 2023)

  • Security Updates - Critical

  • CN-20152 - Critical
    Unsupported non-ASCII256 header values are converted to ?

  • AN-227752 - Critical
    Security Improvements

  • AN-226788 - High
    Fixed an issue that could result in HA site failure when a site's primary engine becomes unavailable.

  • AN-220855 - High
    Updated Jackson libraries

Self-managed package (09 Mar 2023)

Self-managed customers can use the following links to download and install the hotfixes package.

This cumulative hotfix package includes all resolved issues listed below in a single download. This hotfix is required for any Appian 21.2 installations not currently up to date with the latest hotfixes. After installing, you will be running on Appian 21.2.2130.0.

You can view your current self-managed Appian version by logging into your Appian environment as a designer or system administrator and clicking the navigation menu > About Appian.

The package resolves the following issues.

21.2.2130.0 (09 Mar 2023)

  • Security Updates - Critical

  • AN-222300 - Low
    Configure Script now includes the ability to validate an installation.

21.2.2110.0 (06 Mar 2023)

  • Security Updates - High

  • AN-223242 - Critical
    Updated jave protobuf, google cloud automl, jackson databind, google cloud core, and google cloud storage libraries within Google Connected Systems

  • AN-226698 - High
    Security Improvements

  • AN-211063 - High
    Removed extraneous log entries from the MirrorMaker log file to improve overall legibility.

  • AN-218002 - Medium
    Appian Cloud Database now uses version 5.2.1 of phpMyAdmin.

21.2.2080.0 (23 Feb 2023)

  • Security Updates - High

  • AN-226160 - High
    Security Improvement

  • AN-221245 - High
    Kafka Upgrade

21.2.2045.0 (09 Feb 2023)

  • Security Updates - Critical

  • AN-223680 - Medium
    Fixed an issue that was causing significant delays during the checkpoint storage process.

  • CN-18110 - Low
    Fixed an issue that prevented shutdown of the Internal Messaging Service for some high availability sites.

  • AN-223401 - Low
    Updated the engine startup script to include logging on script invocation time and passed parameters.

  • AN-222592 - Low
    Fixed an issue where process history replication factors were incorrect following a change in site topology from single node to high availability.

21.2.2035.0 (02 Feb 2023)

  • Security Updates - Critical

  • AN-220449 - High
    Upgraded SnakeYAML Library

21.2.2020.0 (19 Jan 2023)

  • Security Updates - Low

  • AN-221122 - Critical
    Removed references to the ConsumerConfig.addDeserializerToConfig and ProducerConfig.addSerializerToConfig methods due to deprecation in Kafka 3.3.1.

  • AN-218227 - Low
    Improved ADS logging when it is run as a service.

21.2.2000.0 (12 Jan 2023)

  • Security Updates - Low

21.2.1970.0 (22 Dec 2022)

  • Security Updates - Low

  • AN-220626 - Medium
    The property conf.monitoring.rdbms.SLOW_QUERY_THRESHOLD_MS in custom.properties can now be set permanently on Appian Cloud environments via an Appian Support case. This property configures the threshold value (in milliseconds) that logs a slow query operation by data store.

  • AN-219912 - Medium
    Appian Cloud now uses the 42.5.1 version of the JDBC Driver for PostgreSQL Database.

21.2.1950.0 (15 Dec 2022)

  • Security Updates - Critical

  • AN-219995 - High
    Security Improvement

  • AN-220177 - Medium
    Security Improvements

21.2.1925.0 (08 Dec 2022)

  • AN-219995 - High
    Security Improvement

  • AN-218784 - Low
    MariaDB database in Appian Cloud received a minor version upgrade to 10.6.11

21.2.1910.0 (02 Dec 2022)

  • Security Updates - Critical

  • AN-217700 - Medium
    Fixed an issue that caused intermittent "Cannot read properties of null (reading 'getIn')" errors during user site interaction.

21.2.1885.0 (18 Nov 2022)

  • Security Updates - Critical

  • AN-215914 - Low
    Security Improvement

21.2.1865.0 (11 Nov 2022)

  • Security Updates - Critical

  • AN-217611 - High
    Increases the connection pool for ADS queries

  • AN-213666 - High
    Upgrade SnakeYAML Library

  • AN-214213 - Medium
    Upgraded OpenPDF from version 1.3.26 to 1.3.30 to provide support for additional encryption types.

  • AN-216864 - Low
    Fixed an issue where decimals contained in a Record Type are converted to text when exported to Excel.

21.2.1845.0 (03 Nov 2022)

  • Security Updates - High

21.2.1825.0 (27 Oct 2022)

  • Security Updates - Critical

  • AN-217565 - Critical
    Security Improvement

  • AN-212451 - Critical
    Removed the Apache Xalan Java library. If you have developed any plug-ins that depend on Apache Xalan, you will need to update them to remove or replace the use of this library. If you don't update them, they will stop working when plug-in users upgrade.

21.2.1805.0 (21 Oct 2022)

  • Security Updates - Critical

  • AN-215833 - Medium
    Security Improvement

  • AN-212724 - Low
    Upgrade Tika Library

21.2.1795.0 (14 Oct 2022)

  • Security Updates - Critical

21.2.1790.0 (13 Oct 2022)

  • Security Updates - Medium

  • AN-215834 - Medium
    Security Improvement

21.2.1770.0 (06 Oct 2022)

  • Security Updates - High

21.2.1745.0 (30 Sep 2022)

  • Security Updates - High

  • AN-214461 - Medium
    Fixed an issue where Start and Stop script permissions were incorrectly set after applying a hotfix.

  • AN-212535 - Medium
    Fixed an issue where file uploads freeze when a file upload component is embedded in an editable grid.

21.2.1720.0 (23 Sep 2022)

  • Security Updates - Medium

  • AN-210227 - Medium
    Updated the change-paths.bat script logs to include values for notesOldPath and notesNewPath.

21.2.1695.0 (15 Sep 2022)

  • AN-210242 - High
    Upgrade Jetty Library

  • AN-213319 - Medium
    Fixed an issue in Kafka topicRecovery script which could lead to topics not having an assigned leader.

  • AN-212443 - Medium
    Fixed an issue where Start and Stop script permissions were incorrectly set after applying a hotfix.

  • AN-187367 - Low
    A bug was identified that caused the recipients email header to be blank in outbound emails, which caused Appian-generated notifications to be routed to spam occasionally. The recipients header is now populated for all outbound emails.

21.2.1675.0 (08 Sep 2022)

  • Security Updates - High

  • AN-210621 - High
    Improve ADS connection pool error handling

21.2.1660.0 (02 Sep 2022)

  • AN-212086 - Medium
    Fixed an issue where embedded Google Maps display an error when "View Larger Map" is clicked.

  • AN-211829 - Low
    The read-only grid now uses the proper decimal separator according to the user's locale when displaying decimal numbers in grid cells.

21.2.1650.0 (01 Sep 2022)

  • Security Updates - High

  • AN-211615 - High
    Upgrade OkHttp Library

  • AN-202701 - Medium
    Fixed an issue where exiting out of a file upload component prior to upload completion causes the interface to break due to a null pointer exception.

  • AN-191159 - Low
    Upgraded the Salesforce Connected System component REST API from version 44.0 to 52.0. API version 52.0 is backwards compatible with previous versions.

21.2.1625.0 (25 Aug 2022)

  • Security Updates - Critical

  • AN-212519 - Medium
    Fixed an issue that resulted in intermittent "Cannot read properties of null (reading 'getIn')" errors when entering information into an interface textField.

  • AN-167569 - Low
    Fixed an issue that introduced unnecessary log pollution and degraded the collection of Record Response Time metrics.

21.2.1605.0 (19 Aug 2022)

  • Security Updates - High

21.2.1600.0 (18 Aug 2022)

  • Security Updates - Critical

  • AN-210950 - Medium
    Upgraded AWS Machine Learning Library

  • AN-209146 - Medium
    Upgraded Bouncy Castle Library

  • AN-212000 - Low
    Add a retry to ensure kafka is ready for ADS startup

21.2.1575.0 (11 Aug 2022)

  • Security Updates - Critical

21.2.1565.0 (09 Aug 2022)

  • Security Updates - Medium

  • AN-212011 - Critical
    Fixed an issue that caused a discrepancy between the Process Execution and Process Analytics Engines resulting in intermittent bugs in Process Reports.

  • AN-203429 - Medium
    Fixed an issue which sometimes caused updating security on a newly-created folder to fail due to an error.

21.2.1545.0 (04 Aug 2022)

  • Security Updates - Critical

  • AN-210404 - Medium
    Fixed a bug that sporadically prevented Appian Data Service from starting up as a result of a race condition related to Kafka initialization.

  • AN-210029 - Medium
    Improved data service connection pool utilization for queries against synced records.

  • AN-181596 - Medium
    Fixed an issue which caused old versions of data types to be visible when searching for design objects using the global quick search.

  • AN-210084 - Low
    Security Improvement

  • AN-209649 - Low
    Upgraded to latest AL2 base image.

21.2.1520.0 (29 Jul 2022)

  • Security Updates - Critical

  • AN-210640 - High
    For the Appian Cloud sites, fixed an issue with mysql.slow_log table that caused MariaDB upgrade failure.

  • AN-210069 - Medium
    Fixed an issue where images and icons sometimes fail to render on a site after plug-in deployment.

21.2.1495.0 (21 Jul 2022)

  • Security Updates - High

  • AN-209161 - High
    Improved Service Manager logging during an incomplete shutdown to include a detailed reason and steps to remediate it.

  • AN-209886 - Medium
    For the Appian Cloud sites, fixed an issue related to the change in character set for some tables during upgrade from MariaDB 10.5 to MariaDB 10.6.

  • AN-209419 - Low
    The data service now properly retries failed tasks when starting up.

21.2.1470.0 (15 Jul 2022)

  • Security Updates - Critical

  • AN-209209 - Medium
    For the Appian Cloud sites, improved error handling during MariaDB upgrade.

  • AN-208136 - Medium
    Fixed an issue with exporting a read-only grid. A null field value used in a grid column with a rich text component was causing the remaining values on that grid column to not be exported.

  • AN-200015 - Medium
    Fixed an issue with connected system creation where when the developer chooses to create a new integration the connected system would not show as a precedent of the integration until after an initial save.

21.2.1451.0 (11 Jul 2022)

  • Security Updates - Critical

21.2.1450.0 (07 Jul 2022)

  • Security Updates - High

21.2.1430.0 (01 Jul 2022)

  • Security Updates - High

  • AN-209374 - Critical
    Fixed an issue that prevented Blue Prism connected systems from being available

  • AN-204283 - Medium
    Fixed a memory management issue when syncing records that may lead to unresponsive sites and full site outages.

21.2.1425.0 (30 Jun 2022)

  • Security Updates - Critical

  • AN-209227 - High
    For Appian Cloud environments, fixed an issue that prevented phpMyAdmin from being accessed.

  • AN-205107 - Medium
    Fixed an issue that caused an error when viewing the outbound deployment details for deployments which only contained database scripts or plug-ins.

21.2.1400.0 (23 Jun 2022)

  • Security Updates - High

  • AN-207169 - Medium
    Fixed an issue that caused a!isUserMemberOfGroup to incorrectly return 'true' when executed on an inactive user.

  • AN-202654 - Medium
    Fixed a race condition in Admin Console that prevented configuration changes from being saved.

  • AN-164454 - Medium
    Improved error handling and messaging in Appian's cloud installation scripts.

  • AN-205113 - Low
    Added an existence check for a Kafka process so another one cannot be started in parallel.

21.2.1375.0 (16 Jun 2022)

  • Security Updates - High

  • AN-208182 - Medium
    Fixed an issue that prevented the Document Viewer Component from displaying its contents when opened from certain links.

  • AN-207398 - Medium
    MariaDB has been upgraded to version 10.6.8 for Appian Cloud sites.

  • AN-206002 - Medium
    Fixed an issue which could lead to engines not checkpointing.

  • AN-200249 - Medium
    Added a warning and a delayed start to the Appian "Stop Script" to avoid accidental cluster wide shutdown.

21.2.1350.0 (09 Jun 2022)

  • Security Updates - High

  • AN-205103 - High
    Added JWT Grant authentication to the DocuSign connected system in response to the pending removal of support for Basic authentication by DocuSign on October 5, 2022.

21.2.1325.0 (02 Jun 2022)

  • Security Updates - Critical

  • AN-205738 - High
    Sites using Appian-hosted MySQL database are upgraded to release 5.7.38, which includes security and bug fixes. Details are available on the MySQL website (https://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-38.html)

  • AN-203594 - Low
    Improvements to reduce installation time of phpmyadmin.

21.2.1295.0 (26 May 2022)

  • Security Updates - High

  • AN-206501 - High
    Fixed an issue where a single Kafka broker could lead to an outage until all the Kafka brokers are online.

  • AN-207045 - Low
    Fixed an issue that caused a!isUserMemberOfGroup to return an error when executed on an inactive user.

  • AN-206663 - Low
    Fixed issue where "Expected dialog to exist for id" error displayed in the compare and deploy wizard when one of the scripts is modified while viewing the compare and deploy script list.

21.2.1285.0 (19 May 2022)

  • Security Updates - High

21.2.1265.0 (12 May 2022)

  • Security Updates - High

  • AN-206020 - High
    Fixed issue where a system error was displayed when selecting a table during configuration of a synced record type. This error occurred when the data source had multiple database tables with the same name in different schemas.

  • AN-202310 - Medium
    Upgraded phpMyAdmin to 5.1.3

  • AN-199194 - Medium
    Fixed an issue where the visibility of a record action used in a record grid column did not re-evaluate after the data was updated through a record action.

21.2.1245.0 (05 May 2022)

  • Security Updates - High

  • AN-200469 - Low
    Service Manager will automatically restart after an unexpected outage.

21.2.1230.0 (29 Apr 2022)

  • Security Updates - High

  • AN-205342 - Critical
    Customers using a database other than MariaDB on versions 21.3 and below will now be able to successfully upgrade to 21.4 and above. This fix also fixed an issue in which synced records could no longer be synced successfully on databases other than MariaDB.

  • AN-200822 - Critical
    Fixed an issue that prevented self-managed customers from specifying a non-default location for process notes.

  • AN-202632 - High
    Fixed an issue that prevented certain functions from being properly evaluated when used as an input parameter in a process model.

  • AN-205231 - Medium
    Fixed an issue that prevented user from switching between published and draft versions of Data Store Object in Appian Designer.

  • AN-204251 - Medium
    Fixed issue with ZooKeeper writing to its log directory when upgraded to version 3.8.0.

21.2.1185.0 (14 Apr 2022)

  • Security Updates - High

  • AN-200096 - High
    Process deletion is now optimized to consume less memory.

  • AN-204344 - Medium
    The a!queryRecordType() function now evaluates in parallel.

  • AN-202926 - Medium
    Fixed issue where a record type incorrectly showed fields from multiple tables if the only difference in table names is that one table name used either the "%" or the "_" wildcard characters. For example: "abc_table" and "abcdtable", "abc%j and "abcdefgj.

  • AN-202514 - Medium
    Added log messages for the creation of certificates for connected environments and OAuth tokens to provide the full lifecycle of these certificates.

  • AN-202158 - Medium
    Fixed an issue that prevented some task viewers to be able to successfully open links in the task interface when they had not accepted the task.

21.2.1160.0 (06 Apr 2022)

  • Security Updates - Critical

  • AN-202684 - High
    Querying process history now consumes less memory especially for long running process instances.

  • AN-200267 - High
    Fixed an issue during site shutdown that could result in incomplete engine checkpoints.

  • AN-201984 - Medium
    Fixed an issue that caused process variables of type 'User' to be automatically assigned an incorrect default value even though there is no default value configured for the variable.

  • AN-200374 - Medium
    Fixed an issue with exporting a Read-Only Grid in cases where an included Link Component is missing a valid link.

  • AN-200300 - Medium
    Appian Cloud database has been upgraded to MariaDB 10.5.15.

  • AN-123425 - Medium
    For Appian Cloud customers, the sail_state_cache table in Appian data source is now truncated during site startup to preserve disk space.

  • AN-202936 - Low
    Security Improvement

  • AN-202273 - Low
    Fixed an issue which, in rare scenarios after an upgrade, caused an error upon editing a record list interface or viewing record list performance in the Appian Designer.

  • AN-201791 - Low
    The MirrorMaker startup script has been updated to include additional logging and health checks for Kafka.

  • AN-200273 - Low
    Fixed an issue in determining Kafka replication factors that could lead to HA failure during periods of Kafka instability.

  • AN-186797 - Low
    The max_active property for both the Appian and AppianAnywhere data sources is now configurable with default value of 100.

21.2.1125.0 (24 Mar 2022)

  • Security Updates - High

21.2.1105.0 (17 Mar 2022)

  • Security Updates - Critical

  • AN-201182 - Critical
    Fixed an issue where applications with a large number of objects in them caused performance issues.

  • AN-202296 - High
    Updated the image.

  • AN-202169 - High
    Fixed an issue where an error message displayed when a!queryRecordType() was used within one of the following looping functions: all, any, apply, filter, merge, none, reduce, or reject.

  • AN-202033 - High
    Process executions no longer fail due to unexpected process errors. This fixes an issue caused by AN-196802 where a process would be unexpectedly paused by exception when running on an engine it wasn't published on.

  • AN-201645 - High
    Fixed an issue that prevented site shutdown when encountering an engine responsiveness service failure.

  • AN-198855 - High
    Fixed an issue in an internal migration of process history which caused the process execution engine to rollback due to an incorrect and unexpected null value.

  • AN-201263 - Low
    Data sources created in the admin console and connected systems now have a default validation query timeout of 5 seconds.

  • AN-199887 - Low
    Fixed a memory management issue that may lead to unresponsive sites and full site outages.

21.2.1085.0 (10 Mar 2022)

  • AN-201182 - Critical
    Fixed an issue where applications with a large number of objects in them caused performance issues.

  • AN-200881 - High
    Fixed an issue where an error message displayed when a!queryRecordType() was used within one of the following looping functions: all, any, apply, filter, merge, none, reduce, or reject.

21.2.1075.0 (04 Mar 2022)

  • Security Updates - Critical

  • AN-201190 - Critical
    Updated Debian-CIS baseline image to address Kafka container vulnerabilities.

  • AN-201308 - Medium
    Security Improvement

  • AN-201180 - Medium
    Fixed an issue that caused that caused performance degradation with the Email Poller when using IMAPS protocol.

21.2.1045.0 (24 Feb 2022)

  • Security Updates - Critical

  • AN-201193 - Critical
    Updated Debian-CIS baseline image to address ZooKeeper container vulnerabilities.

  • AN-201191 - Critical
    Updated Debian-CIS baseline image to address Service Manager container vulnerabilities.

  • AN-200966 - High
    Fixed an issue that slowed imports of large applications.

  • AN-200841 - High
    Indirect members are now displayed correctly while viewing the list of members of a group in Appian Designer.

  • AN-200233 - High
    Fixed an issue that caused the isusermemberofgroup() function to throw an expression evaluation error for some customers after upgrading to Appian 21.3.

  • AN-200969 - Medium
    Fixed an issue with the Service Manager startup sequence that could result in silent startup failures.

  • AN-200049 - Medium
    Searching for Appian documents and folders using IDs or UUIDs is now faster and more efficient. Prior to this fix, searching for these objects could cause high load on the content engines resulting in slowness across the environment.

21.2.1020.0 (17 Feb 2022)

  • Security Updates - Critical

  • AN-200261 - Medium
    Improved performance of user and group picker suggestions when a group filter is supplied.

21.2.1005.0 (10 Feb 2022)

  • Security Updates - High

  • AN-199158 - High
    Added an optimization to process model validation that speeds up previously slow deployments for certain process models.

  • AN-200190 - Low
    Host networking removal for the Web Application Server.

21.2.985.0 (03 Feb 2022)

  • Security Updates - Medium

  • AN-199704 - High
    Fixed an issue where some Appian customers were experiencing increased memory usage as a result of recent optimization efforts.

  • AN-196761 - Medium
    You can now configure a refresh interval for a record list.The refresh interval is how often you want the record list to refresh its data automatically.

Installation

Perform the following steps to apply the hotfix:

  1. Stop Appian. See Starting and Stopping Appian for detailed instructions:
    1. Shut down the application server.
    2. Shut down the search server.
    3. Shut down the data server.
    4. Shutdown all Appian Engines, ensuring that the engines are checkpointed upon shutdown.
  2. Back up your existing Appian instance. See Backing Up Your Existing Appian Instance.
  3. Unzip the contents of the 21.2.2130.0_Hotfix.zip archive into your <APPIAN_HOME> directory.
  4. Run the deleteFiles script (deleteFiles.bat on Windows, deleteFiles.sh on Linux) that is now located in your <APPIAN_HOME> directory.
    • If the script reports that some files were not deleted, address the reason for the failure (common causes listed below), and run it again until it no longer reports failed deletions.
    • Common causes of failed file deletion include:
    • The file is open in another window or process
    • The file is locked
    • You do not have permission to delete the file
  5. Unzip the contents of the updates.zip archive that is now located your <APPIAN_HOME> directory.
  6. Run the installJdk script (installJdk.bat on Windows, installJdk.sh on Linux).
  7. If you maintain customized or overridden Spring Security .xml files, merge them with the associated base files in the /deployment/web.war/WEB-INF/conf/security/ directory.
  8. Delete the deleteFiles scripts, the installJdk scripts, the OpenJDK .tar.gz and .zip files, and updates.zip.
  9. If you are using a Web server, copy the content of <APPIAN_HOME>/deployment/web.war to the folder where the Web server is getting the static resources. See Copy Static Resources to the Web Server for more information.
  10. Run the configure script to deploy your environment's configuration and re-configure any node names previously set by the configure script tools.
  11. Start Appian:
    1. Start the Appian Engines.
    2. Start the data server.
    3. Start the search server.
    4. Start the application server.

To determine if the Appian 21.2 Hotfix is deployed, open the build.info file located in <APPIAN_HOME>/conf/. The contents of this file should match the following code sample:

build.revision=70bba9388b99c958dba73030944cadca6caffbc7
build.version=21.2.2130.0
Open in Github Built: Tue, May 23, 2023 (06:12:33 PM)

On This Page

FEEDBACK