Quality Clouds 20.3.3.0 Release Notes

2 min read

Release date: 18th August 2020

Highlights #

  • We’re now checking for jQuery vulnerabilities in your  open-source libraries

Our analysis now includes the following known vulnerabilities for both ServiceNow and Salesforce:

DescriptionSeverityImpact area
jQuery – Prototype Pollution Vulnerability under 3.4.0HighSecurity
jQuery – XSS vulnerability under 1.6.3, when using location.hashHighSecurity
jQuery – XSS vulnerability under 1.9.0, when using jQuery(strInput)HighSecurity
jQuery – XSS vulnerability under 3.0.0, when making cross-domain calls without the dataType optionHighSecurity
jQuery-ui-tooltip – XSS vulnerability under 1.10.0, title attributeHighSecurity
jQuery-ui-dialog – XSS vulnerability under 1.10.0, title attributeHighSecurity
jQuery-ui-dialog – XSS vulnerability under 1.10.0, closeText parameterHighSecurity

Quality Clouds for ServiceNow #

  • Editing in Visual Studio Code? Now we have extensions to easily check your code!

The Quality Clouds extensions for Visual Studio Code connects to our centralized, curated set of best practices and rules and checks your code against it. Our ruleset includes best practices for Salesforce, ServiceNow, Quality Clouds’ own recommendations, and other industry standards.

Learn more at Checking your ServiceNow code with Visual Studio Code.

  • Check more about what affects your upgrades

We’ve improved our Upgradeability view to show you more information on out of the box elements, and added more visual representation of your upgradeability timeline. We’re showing you OOTB modifications over time and its breakdown.

See more in Views for ServiceNow > Upgradeability

  • Learn about customization vs configuration changes by email

We’re including the customization vs configuration KPI in our scan emails now, so that you stay alerted without having to log in. 

Quality Clouds for Salesforce #

  • We’ve improved our GDPR rules for Salesforce

We’re now checking the Sensitivity level and Compliance categorization. 

The following rules have been added: 

DescriptionSeverityArea of impact
Data sensitivity level of field email is not setWarningSecurity
Data sensitivity level of field passport is not setWarningSecurity
Data sensitivity level of field address is not setWarningSecurity
Data sensitivity level of field nationality is not setWarningSecurity
Data sensitivity level of field gender is not setWarningSecurity
Data sensitivity level of field religion is not setWarningSecurity

Bug fixes #

The following bug has been fixed in this release:

Updated on March 21, 2025