question-mark
Stuck on an issue?

Lightrun Answers was designed to reduce the constant googling that comes with debugging 3rd party libraries. It collects links to all the places you might be looking at while hunting down a tough bug.

And, if you’re still stuck at the end, we’re happy to hop on a call to see how we can help out.

Document "riskdesc" in reports

See original GitHub issue

As per discussion here, the risk description is given as Low (Medium) but what this means isn’t documented yet.

What this means is a Low risk issue has been detected with Medium confidence.

This issue is to document this somewhere that makes sense. It should be a fairly easy update so please mark as a good first issue.

Issue Analytics

  • State:open
  • Created a year ago
  • Comments:9 (5 by maintainers)

github_iconTop GitHub Comments

1reaction
psiinoncommented, Oct 4, 2022

The report add-on help is available online at https://www.zaproxy.org/docs/desktop/addons/report-generation/ Each report is documented in links off https://www.zaproxy.org/docs/desktop/addons/report-generation/templates/ Have a look at the report samples and see which ones report alerts like Low (Medium) Those are the ones which will need the documenting. I think you can document that on the relevant help page for each report, they live under https://github.com/zaproxy/zap-extensions/tree/main/addOns/reports/src/main/javahelp/org/zaproxy/addon/reports/resources/help/contents

1reaction
devylopercommented, Oct 1, 2022

I would like to work on this issue. May I get this assigned to me? Thanks.

Read more comments on GitHub >

github_iconTop Results From Across the Web

Export Report - OWASP ZAP
Documentation · The OWASP ZAP Desktop User Guide · Add-ons · Export Report. This add-on has been deprecated and replaced by the Report...
Read more >
Migrate DAST tool to the common report format - GitLab.org
The migration has three stages: DAST will create a gl-dast-report.json report containing the legacy ZAProxy fields and the Common Report Fields.
Read more >
The Custom Messages file used for audit reports - IBM
The CustomMessages_lang.properties file contains the key-and-value pairs that are used for the localization of the DATA and STATUS_REASON columns of the ...
Read more >
Web Application Defense with Bayesian Attack Analysis
-f: path to ZAP xml report file ... DAST Scans Resource and generates report. – WAF pulls report and extracts vulnerability data.
Read more >
Upload Plugins - Dradis Framework Guides
Upload plugins are used to process files created by other tools and ... a sample report gives us an idea of the structure...
Read more >

github_iconTop Related Medium Post

No results found

github_iconTop Related StackOverflow Question

No results found

github_iconTroubleshoot Live Code

Lightrun enables developers to add logs, metrics and snapshots to live code - no restarts or redeploys required.
Start Free

github_iconTop Related Reddit Thread

No results found

github_iconTop Related Hackernoon Post

No results found

github_iconTop Related Tweet

No results found

github_iconTop Related Dev.to Post

No results found

github_iconTop Related Hashnode Post

No results found