Nuno Dias
Nuno Dias
I'm checking your code here, so you wrote the parser so that it can automatically identify if it's one of the 4 report types? All findings will therefore be aggregated...
> @manuel-sommer @shodanwashere Just for awareness, there's some very new parser guidelines I wrote up at #9690 > > In this specific case, I think this is fine because they...
Here's also the ### Vulnerability Report ``` @timestamp,cve_attack_vector,cve_caused_by_package,cve_container_image,scan_id,cve_container_image_id,cve_cvss_score,cve_description,cve_fixed_in,cve_id,cve_link,cve_severity,cve_overall_score,cve_type,host_name,cloud_account_id,masked 2024-02-22 15:54:17.939 +0000 UTC,cvss:3.1/av:l/ac:l/pr:n/ui:r/s:u/c:n/i:n/a:l,libsepol:2.5-8.1.amzn2.0.2,aws-node / secpipe-core-prd-ip-10-xxx-xx-xx.eu-west-1.compute.internal,8031c90cd679ae9fb4d2689e645205d1b403e970b2fbcc19249a8b851996bacf-1708612867,8031c90cd679ae9fb4d2689e645205d1b403e970b2fbcc19249a8b851996bacf,3.3,The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __cil_verify_classpermission and __cil_pre_verify_helper).,2.5-10.amzn2.0.1,CVE-2021-36084,https://www.cve.org/CVERecord?id=CVE-2021-36084,low,3.3,base,secpipe-core-prd-ip-10-xxx-xx-xx.eu-west-1.compute.internal,,False 2024-02-07...
> @shodanwashere, could you please answer the question of @mtesauro? Then, I can finish the PR yes of course sorry, i've had some parallel issues on my side and didnt...
[ComplianceReport.xlsx](https://github.com/DefectDojo/django-DefectDojo/files/14824425/ComplianceReport.xlsx) [MalwareReport.xlsx](https://github.com/DefectDojo/django-DefectDojo/files/14824426/MalwareReport.xlsx) [VulnerabilityReport.xlsx](https://github.com/DefectDojo/django-DefectDojo/files/14824427/VulnerabilityReport.xlsx) [SecretReport.xlsx](https://github.com/DefectDojo/django-DefectDojo/files/14824428/SecretReport.xlsx) @manuel-sommer here you go sorry for the late response
@manuel-sommer any updates?
Hey all! Any updates on the review needed for the pull request? It's been about a month since my last update request, but I got no response... if any of...
@mwager fyi
here's the example report from my side: [results_json.json](https://github.com/user-attachments/files/20061271/results_json.json) this is probably more complex behavior to implement but these kinds of reports will have content like references to benchmarks: ``` ......
Thanks to everyone who has also brought up these issues. I'd like to clarify, however, that these issues we've had in 0.9.3 have also been present in prior versions of...