🔒 New browser security hardening is live to help defend against AI-driven attacks. Learn more

eShare 174 Release Notes

Prev Next

This document describes the features, enhancements, and bug fixes included in eShare Release 174.

Enhancements

  • Enhanced Email Notification System: Smarter, More Personalized Alerts: The Email Notification System has been fully reworked to improve clarity, control, and user experience. Email notifications are now organized into four distinct categories: Messages (secure conversation messages and replies in Trusted Share, including a notification that optionally includes the full conversation history and the ability to reply directly from the notification in Outlook); Activities (Trusted Share-related activity alerts such as file uploads); Requests & Actions (notifications that require user action and follow up with updates once actions are completed); and System (essential alerts required for product functionality). eShare administrators can now control the generation of email notifications across the entire organization based on notification type via the Email Notification Management section in Device Policy — Messages, Activities, and Requests & Actions can be independently enabled for all users and all Trusted Shares (all notifications are enabled by default; system notifications are always generated and cannot be controlled). For Messages, two sub-options are available: Full Secure Conversation Notification (when enabled, message notifications include the new message within the context of the full conversation history, with control over message size to ensure email deliverability) and New Reply with Adaptive Card Notification (when enabled, message notifications include a Reply button allowing users to reply to messages directly from their Outlook email client). Email notifications can also be controlled at the user level via the M365 Trusted Sharing App Notification Wizard. User settings are prioritized above the org settings. Note that regardless of settings, all notifications are viewable within the Cloud Web Portal (Pending Requests >> Notifications tab) and from within the M365 Trusted Sharing App. Please consult your customer success manager prior to changing default notification settings.

  • Expanded External Sharing: Communication and Classic Sites Now Supported: We've enhanced eShare's external sharing capabilities by providing support for SharePoint Communication and Classic Sites, in addition to the previously supported modern Team Sites. This update allows users to securely share content from Communication and Classic Sites using the eShare M365 Trusted Sharing App, Trusted Sharing Action Menu App, and SharePoint Trusted Sharing App. Note that Trusted Sharing via the Cloud Provider page in the Cloud Web Portal is not supported for Communication and Classic Sites. Because Communication and Classic Sites do not use Microsoft 365 Groups for permissions, there are some differences in behavior within eShare — for example, Share With Me Links are not available. Please consult your Customer Success Manager to discuss your specific requirements.

Bug Fixes

  • Iterable IDOR Vulnerability: Fixed a security flaw in the Secure Conversation message composition flow that could expose all users' email addresses due to improper access control validation.

  • User Pre-Provisioning Script Task ID: Resolved a provisioning issue where the Task ID in the pre-provisioning script failed to execute correctly, impacting automation flows.

  • PHI Exposure via Jet Authentication: Mitigated a vulnerability where authentication tokens could be exposed, along with an improperly secured guest interface.

  • Permission Denied on Email View: Corrected an access control bug that caused recipients to receive a "Permission Denied" error when attempting to view secure email messages in their browser.