Since upgrading Splunk to 6.5.2, in the Splunk Enterprise Security (ES) search page I get "TypeError: message is undefined" when clicking the "Event Actions" button within an expanded event. The same thing happens on the "Incident Review" page if I click the down arrow in any column of the events table. This happens in both Firefox and Internet Explorer (IE) 11
TypeError: message is undefined
_()
i18n.js:30
["require/underscore"]/__WEBPACK_AMD_DEFINE_RESULT__</<.t()
common.js:175
["contrib/underscore"]/</_.mixin/</_.prototype[name]()
common.js:178
anonymous()
common.js line 178 > Function:22
["contrib/underscore"]/</_.template/template()
common.js:178
["views/shared/eventsviewer/shared/WorkflowActions"]/__WEBPACK_AMD_DEFINE_RESULT__</<.render()
common.js:240
["views/Base"]/__WEBPACK_AMD_DEFINE_RESULT__
This is resolved. The error was caused by a corrupted file: in $SPLUNK_HOME/etc/apps/SA-ThreatIntelligence/local/workflow_actions.conf
I deleted this file, restarted splunk and no more errors.
Thanks for the update!
What version of Splunk Enterprise Security do you have installed? Have you cleared your browser cache?
Hi, it's 4.5.2 and yes I have tried clearing my browser cache. This issue is affecting all users of our ES app.
Thanks.