Document "riskdesc" in reports
See original GitHub issueAs per discussion here, the risk description is given as Low (Medium)
but what this means isn’t documented yet.
What this means is a Low
risk issue has been detected with Medium
confidence.
This issue is to document this somewhere that makes sense. It should be a fairly easy update so please mark as a good first issue
.
Issue Analytics
- State:
- Created a year ago
- Comments:9 (5 by maintainers)
Top Results From Across the Web
Export Report - OWASP ZAP
Documentation · The OWASP ZAP Desktop User Guide · Add-ons · Export Report. This add-on has been deprecated and replaced by the Report...
Read more >Migrate DAST tool to the common report format - GitLab.org
The migration has three stages: DAST will create a gl-dast-report.json report containing the legacy ZAProxy fields and the Common Report Fields.
Read more >The Custom Messages file used for audit reports - IBM
The CustomMessages_lang.properties file contains the key-and-value pairs that are used for the localization of the DATA and STATUS_REASON columns of the ...
Read more >Web Application Defense with Bayesian Attack Analysis
-f: path to ZAP xml report file ... DAST Scans Resource and generates report. – WAF pulls report and extracts vulnerability data.
Read more >Upload Plugins - Dradis Framework Guides
Upload plugins are used to process files created by other tools and ... a sample report gives us an idea of the structure...
Read more >Top Related Medium Post
No results found
Top Related StackOverflow Question
No results found
Troubleshoot Live Code
Lightrun enables developers to add logs, metrics and snapshots to live code - no restarts or redeploys required.
Start FreeTop Related Reddit Thread
No results found
Top Related Hackernoon Post
No results found
Top Related Tweet
No results found
Top Related Dev.to Post
No results found
Top Related Hashnode Post
No results found
Top GitHub Comments
The report add-on help is available online at https://www.zaproxy.org/docs/desktop/addons/report-generation/ Each report is documented in links off https://www.zaproxy.org/docs/desktop/addons/report-generation/templates/ Have a look at the report samples and see which ones report alerts like
Low (Medium)
Those are the ones which will need the documenting. I think you can document that on the relevant help page for each report, they live under https://github.com/zaproxy/zap-extensions/tree/main/addOns/reports/src/main/javahelp/org/zaproxy/addon/reports/resources/help/contentsI would like to work on this issue. May I get this assigned to me? Thanks.