Hi! We’re currently running Fleet v4.64.2, and I n...
# fleet
c
Hi! We’re currently running Fleet v4.64.2, and I noticed that the Fleet Desktop app no longer shows the ability to search or filter vulnerabilities. This feature was definitely present in v4.58.0 — I’ve attached a screenshot of what the interface used to look like. Has this functionality been *removed or intentionally changed i*n recent versions? I couldn’t find anything about this in the changelog between v4.58 and v4.64, so I’m just trying to confirm whether it’s expected or a regression. Happy to provide more detail if needed — thanks in advance!
z
Hey @Camilo If I remember correctly, you're running into a bug that has been fixed in the most recent version! It's now an advanced 'Filters' > Toggle 'Vulnerable software' on
c
Nice! We've just upgraded fleet to lastest which which I believe should trigger the agent upgrade too. Will report back
z
Awesome! Let us know
c
Hey Zay, still can't see the advanced filters. Should this be enabled by default?
👀 1
Just confirming I still cannot see the advanced filters. Shall I open bug report? Tried with different browsers as well
Following up on this. I do see the advanced filter in the fleet UI, but still not visible in the desktop App. Can i get some help with this please 🙏
z
@Matt Rebelo Can you jump in on this? ^
ty 1
m
@Zay Hanlon absolutely! Hi @Camilo give me a moment to catch up on whats going on, and we can figure out next steps!
@Camilo thanks for being patient while I reviewed and did some checking on my side. Just to confirm, since updating Fleet server, you now can see the vulnerable software filter via Fleet Desktop on a host (screenshot) but are unable to filter for vulnerabilities on Fleet Server?
When you get a moment, could you also confirm the versions for each. I know you just updated Fleet server but I want to be certain. Fleet Server Version Fleet Desktop Version And I know you've tried a couple different browers and the issue persisted, could I have those versions as well. I'd like to capture this info in the event we create a bug report for you, which we can do today if thats looking like the next step.
c
Thanks @Matt Rebelo. We can't see the vulnerable software filter in the Fleet Desktop app. It is visible in the Fleet Server UI.
Fleet Server 4.71.1
,
Fleet desktop - Agent 1.45.1
,
MacOS 15.6
,
Chrome 139.0.7558.127
,
Firefox 141.0.3
Heres a screenshot from my Fleet Desktop. I noticed the text within the search box only says 'search by name', but in the screenshot that Zay shared, it says "Search by name or Vulnerability (CVE)" + Add Filters
Screenshot from other users as well.
Hi @Matt Rebelo, just a quick follow up on this. We are still unable to see the vulnerable software filter in the Desktop App. Can you confirm if this is a paid feature now?
m
Hello @Camilo so sorry about the delay. I was able to get the bug report created for you, and it'll go through its normal triage steps. Let me know if there's anything you need me to change or update for you to make sure we capture it correctly. There was nothing to suggest this was moved to a paid feature. I will triple check with the team to make absolutely sure.
Quick update from our engineering team, they weren't able to reproduce the issue just yet. But they had made a couple of suggestions that we wanted to pass along. 1. Attempt to force a hard refresh in chrome (command-shift-R) ideally clearing cache and forcing the my device page to redownload all its resources from Fleet server. 2. Would it be possible to re-enroll the host into Fleet? If you have access to the host, of course.
c
Thanks @Matt Rebelo. I've replied in the bug report: We've completely removed orbit and fleet-desktop from my device, created a new fleet-osquery.pkg using fleetctl, installed this new package, and unfortunately we still not see the vulnerability filter from My Device page. We've tried Command-shit-R while on the device page and tried incognito sessions as well with no luck.
The agent is on the latest version as well v1.46.1
m
Thanks Camilo, I'll double check the bug report and make sure this update is reflected there. Thank you for replying in the bug ticket directly, always good to have direct input if we can.
ty 1