We fixed the uncaught exception on bad Basic autm but in doing so we introduced a 302 redirect for API requests as well. Net result: a curl client expecting a 401 gets redirected to the login page instead, and the machine on the other end has no browser to follow it.
List of updated packages
To solve the issue mentioned above, the following packages have been updated for NetEye 4.48:
icingaweb2-module-neteye, icingaweb2-module-neteye-autosetup and icingaweb2-module-neteye-configurator to version 1.194.1-1
NetEye upgrade causes RPMS of next release to be upgraded even if an update is required first We fixed a bug in NetEye 4.47 and 4.48 that caused the neteye upgrade command to update some NetEye packages even when packages Read More
Important: Keycloak security update Type/Severity NetEye Product Security has rated this update as having a high security impact. Topic An update for the keycloak packages is now available for NetEye 4. Security Fix for NetEye 4.49 26.7.3_neteye1.46.1-1 Summary This Keycloak update (version 26.7.3) Read More
Icinga 2 live-creation requests are no longer lost during reload During a Director deployment, Icinga 2 reloads its configuration in the background. Previously, live-creation requests could still be processed for a short time after a reload had been requested. This Read More
Important: Elastic Stack security update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic Updates for the Elastic Stack packages are now available for NetEye 4. Security Fix for NetEye 4.49 9.4.6_neteye3.103.8-1 CVEs Elastic Read More
Important: Keycloak security update Type/Severity NetEye Product Security has rated this update as having a critical security impact. Topic An update for the keycloak packages is now available for NetEye 4. Security Fix for NetEye 4.49 26.7.2_neteye1.46.1-1 Summary This vulnerability, tracked as CVE-2026-18963 Read More