Vulnerabilities

The vulnerabilities page allows you to view detected vulnerabilities using advanced filters covering:

  • Repository
  • Branch
  • Data Elements
  • Severity
  • Status

You can then drill down into one of the vulnerabilities by simply clicking on the row containing the target vulnerability.

The vulnerability drill-down page allows you to view granular details about the vulnerability, including:

  • Severity
  • Status
  • Last Detected Date
  • Repository and Branch Details
  • Commit ID
  • Relevant CWE and OWASP Categories
  • Storage Medium or Third-Party Integration Where PII Is Exposed
  • File URL
  • Code Segment
  • Remediation Guidelines
  • Data Elements Detected

Lastly, there are three actions that can be taken on this page:

  1. File Jira Ticket: You will need to configure Jira on the Settings page to take advantage of this feature.
  2. Ignore this vulnerability: This will change the status from Open to Ignored.
  3. Ignore individual data elements: If a data element (e.g., username) is falsely flagged, you can ignore that specific data element, while the unignored ones will continue to appear. The severity of the issues will then be adjusted based on the sensitivity of the remaining unignored data elements.
Type to search, ESC to discard
Type to search, ESC to discard
Type to search, ESC to discard
On This Page
Vulnerabilities