Release notes from the Edgescan bi-monthly release
- New/Changes
-
Jira Data Centre Integration
As a user, I want to see Edgescan vulnerabilities in Jira Data Center so that development teams can fix security issues using their familiar workflow.
-
Licencing Filters
As a user, I can now filter assets by Penetration_tests, licence status, auto renewal, and licence UUID.
-
Downloading of sitemap/URL List
As a user, I want to export sitemap data directly from the scope configuration page, so that I can analyze crawl results without having to navigate to the asset show page.
-
Add ability to create assets from ASM
As a user, I want to be able to create assets from ASM results.
-
Enable definitions feature
As a user, I can see a subset of vulnerability definitions in the user gui.
- Feature Request: Button to re-send vulnerability opened event
As a user, I want to re-trigger the vulnerability opened event with a default GitHub Issue template, so I can backfill issues for older vulnerabilities.
-
Add "Service/port detected" filter to ASM
As a user, I want to be able to filter hosts in ASM by whether they have any ports open.
-
Change behaviour/wording of Risk Acceptance Function
As a user, I can select additional reasons for discarding a vulnerability, beyond just risk-accepting.
-
Add a last detected date to vulnerabilities page
As a user, I want to see a vulnerability's last detected date, so that I know when a vulnerability was last seen.
-
Edgescan Vuln ID in reports
As a user, I want the vulnerability id included in reports so that I can identify vulnerabilities in reports.
-
Prevent removal of hostnames from dead hosts in ASM
As a user, I want to retain the hostnames even when hosts are subsequently found to be dead
-
- Bug Fixes
- Scheduled Reports | CVSS only breaks scheduling
As a user, I want the 'threat' and 'severity' removed from the standard report when the 'CVSS only' option is selected. - Bulk Actions > Update Assets Issue
As a user, I have access to the full list of columns when bulk updating assets, like I did previously. - Asset Tag filter not working for assessments
As a user, I expect the 'asset tag' filter to work on the Assessments index page. - Asset metadata, asset tier 3 missing
As a user, I want to have an asset tier 3 option. - Remove false positives from the Vulnerabilities in the assessment complete event
As a user, I don't want to see false positives included in the Vulnerabilities in the assessment complete event. - Make EASM licences consumable using Scanning Allowance
As a user, I'd like to make EASM licences consumable using Scanning Allowance, so I can better manage and utilize my available scanning resources.
- Scheduled Reports | CVSS only breaks scheduling