Book a Demo
Pro Cloud Server

Recent Features

 

This page lists the features of Pro Cloud Server v6.5, for the following builds:

 

The main features of Pro Cloud Server 6.5 are shown on the official release page.

 

Select a version below:

 


 

Pro Cloud Server v6.5 (Build 169)
21st of July 2026
  • Cloud Server
    • OpenID Authentication now supports Proof Key for Code Exchange (PKCE)
    • Support for SQL column alias names in custom SQL was increased to a maximum of 255 characters, or the limit imposed by the DBMS
    • Security Updates:
      • Disabled the unused ResolveExternals option while parsing XML
      • Corrected Unauthenticated execution of arbitrary SQL queries (CVE-2025-15625)
      • Stopped Server from revealing sensitive information to an unauthenticated user (CVE-2025-15623)
      • Stopped Server from revealing the encoded Entra ID OAuth2 secret to an unauthenticated user (CVE-2025-15622)
      • The PCS now only supports encrypted communications from the Configuration Client
      • 'Model authentication' is now the only available option on the definition of a Port, Global and None have been removed
      • The order and type of Authentication (Basic, OpenID and Active Directory) allowed per PCS Model is now configured from within PCS's Config Client instead of EA's manage users screen
      • New installations will no longer define a default HTTP, while users can still defined them, but only after acknowledging the security risks
      • Introduced a dedicate connectivity test URL Path of, ie. https://localhost/connectivitytest/
      • Deprecated optional component 'IIS Integration' has been removed from the installer
  • OSLC
    • OpenID: Support for Proof Key for Code Exchange (PKCE)
  • Integrations
    • Custom Integration - add support for specifying Field Mapping for more than one Type
  • Worker
    • Included build 1716
  • WebEA
    • Automatic chat refreshes now preserves scroll position and the state of open menus
    • OpenID Authentication now supports Proof Key for Code Exchange (PKCE)
    • Security Updates:
      • Added validation of the Model Number parameter on the initial page
      • Corrected vulnerability when downloading Internal Artifacts
      • Updated jQuery to version 4.0.0 and jQueryUI to version 1.14.2
      • Improved sanitization of HTML in Javascript
      • Removed call to deprecated function mb_strtolower() in element properties page
  • Cloud Configuration Client
    • (New behavior) Existing HTTP ports are disabled until the port is manually re-saved and the security warning accepted
    • (New behavior) Communications between the Configuration Client and PCS is now encrypted
    • (New behavior) The Configure Database Managers screen now allows the definition of a primary and backup authentication method
    • (New behavior) The list of Database Managers now displays the authentication methods configured
    • (New behavior) When creating a Port, HTTPS is now the default
    • (New behavior) When creating a Port, if HTTP is selected a security warning is now shown to explain that communications will be insecure
    • (New behavior) Model authentication is now the only available option on the definition of a Port
  • WebConfig
    • (New behavior) The Configure Database Managers page now allows the definition of a primary and backup authentication method
    • (New behavior) When creating a Port, HTTPS is now the default
    • (New behavior) When creating a Port, if HTTP is selected a security warning is now shown to explain that communications will be insecure
    • (New behavior) Model authentication is now the only available option on the definition of a Port
    • Security Updates
      • WebConfig must now communication to PCS on a secure port (HTTPS)
      • Updated jQuery to version 4.0.0 and jQueryUI to version 1.14.2
      • Removed the use of the deprecated functions 'curl_close()' and 'str_getcsv()'