Issues

At a glance: Review a summary list of all issues identified during the scan and apply detailed filters to highlight those most relevant to your organization. Then, dig into detailed data for each issue, including recommendations for remediation.

Summary table

The Issues page summary table shows each issue's severity, category, application, owner, date of discovery, and count. You can sort the table by any of its columns, perform detailed issue filtering, and choose from an extensive list of actions for handling each issue.

Filter issues

The filter pane on the left side of the Issues page provides extensive options for filtering issues. You can filter by one or more criteria simultaneously and save your filter combinations to use again later. After you apply a filter, the summary table will display only those issues that meet the filter criteria.

See the Reference section below for a list of all Issues page filters.

Issue details

The issue details pane provides extensive information about the app, including recommendations for remediation, attack path, a list of reachable vulnerabilities, and more. Click on a tab within the pane to navigate the various types of information available.

Issue actions

The buttons in the issue details pane give you extensive options for issue treatment. These actions include:

  • Adding a comment

  • Starting ChatGPT with pre-filled prompts for obtaining more information about the issue

  • Applying an automatic fix for the issue (when available)

  • Viewing a code fix (when available)

  • Opening a pull request applying the code fix

  • Sending an alert to one or more of your organization's Slack channels

  • Creating a Jira ticket or linking to an existing ticket

  • Excluding the issue

    • This moves the issue to the Exclusions page and prevents it from being reported in future scans.

  • Making the app in which the issue was found irrelevant

    • When the app is made irrelevant, all of that app's issues will be removed from the summary table.

  • Disabling the policy that the issue violated

    • Disabling a policy prevents all issues related to that policy from being reported in future scans.

  • Viewing and editing the policy that the issue violated (in a new browser tab)

  • Changing the issue's severity

  • Reporting the issue to OX as a false positive (with the option to exclude/not exclude the issue)

Bulk issue actions

Certain issue actions can be applied to multiple issues simultaneously by selecting the relevant issues in the summary table and using the buttons at the top of the table:

  • Excluding the issues

  • Changing the issues' severity

  • Creating a new Jira ticket

  • Adding, editing, or deleting a comment

Export

You can export several reports from the Issues page in various formats:

  • All issues

    • Aggregated (CSV or PDF)

    • Non-aggregated (CSV)

  • Filtered issues

    • Aggregated (CSV or PDF)

    • Non-aggregated (CSV)

Reference

Issues page filters

Last updated

Copyright ©2024 OX Security. All rights reserved.