Skip to content

[Security] 9.5.4 release notes - #8271

Open
natasha-moore-elastic wants to merge 1 commit into
mainfrom
sec-rn-9.5.4
Open

[Security] 9.5.4 release notes#8271
natasha-moore-elastic wants to merge 1 commit into
mainfrom
sec-rn-9.5.4

Conversation

@natasha-moore-elastic

Copy link
Copy Markdown
Contributor

Resolves #8257: adds the 9.5.4 Security and Endpoint release notes.

Made with Cursor

Co-authored-by: Cursor <cursoragent@cursor.com>
@github-actions

Copy link
Copy Markdown
Contributor

Elastic Docs AI PR menu

Check the box to run an AI review for this pull request.

  • Review docs changes (docs-review). Status: not started.

Powered by GitHub Agentic Workflows and docs-actions. For more information, reach out to the docs team.

@github-actions

github-actions Bot commented Sep 11, 2026

Copy link
Copy Markdown
Contributor

🔍 Preview links for changed docs

@github-actions

Copy link
Copy Markdown
Contributor

✅ Elastic Docs Style Checker (Vale)

No issues found on modified lines!


The Vale linter checks documentation changes against the Elastic Docs style guide. To use Vale locally or report issues, refer to Elastic style guide for Vale.

@gogochan

Copy link
Copy Markdown
Contributor

The wording "Fixes macOS updates that failed when {{elastic-defend}} Device Control was enabled" reads as if macOS updates themselves were broken. The actual issue is that Elastic Defend's Device Control was blocking macOS from applying updates.

Suggested rewording:

Fixes {{elastic-defend}} Device Control blocking macOS system updates from completing. Also adds a warning log about potential misuse of the filter_images advanced policy setting.

* Fixes detection rules so they retry with a smaller page size instead of failing when an event search response is too large [#287916]({{kib-pull}}287916).
* Fixes the alert analysis workflow settings page so it loads without a Workflows privilege, instead of staying on a loading spinner [#287708]({{kib-pull}}287708).
* Fixes the count label in Security donut charts so it's vertically centered [#286900]({{kib-pull}}286900).
* Fixes macOS updates that failed when {{elastic-defend}} **Device Control** was enabled. Also adds a warning log about potential misuse of the `filter_images` advanced policy setting.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
* Fixes macOS updates that failed when {{elastic-defend}} **Device Control** was enabled. Also adds a warning log about potential misuse of the `filter_images` advanced policy setting.
* Fixes {{elastic-defend}} Device Control blocking macOS system updates from completing. Also adds a warning log about potential misuse of the filter_images advanced policy setting.
* ```

### Fixes [elastic-security-9.5.4-fixes]

* Fixes bulk closing all matching alerts so they are updated when the filter uses a {{data-source}} runtime field. Previously the action reported 0 updated alerts [#288946]({{kib-pull}}288946).
* Fixes an issue where the entity summary in the entity details flyout failed to persist when the entity metadata data stream was missing [#288199]({{kib-pull}}288199).

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@nastasha-solomon nastasha-solomon left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

my areas look good, as do the rest of the release notes. Thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Security 9.5.4 release notes

5 participants