Triage_findings | DefectDojo Documentation

Triage findings

Deduplication fundamentals and key concepts

Attaching Files

Upload screenshots, reports, or other supporting files to a Finding, Engagement, or Test in DefectDojo OS

Upload screenshots, reports, or other supporting files to a Finding, Engagement, or Test in DefectDojo Pro

Avoiding Excess Duplicates

Creating Findings Manually

Track vulnerability information without using a scan tool

CVSS Version Support

Which CVSS versions DefectDojo stores, displays, and accepts on Findings

Deduplication Tuning (Open Source)

Configure deduplication in DefectDojo Open Source: algorithms, hash fields, endpoints, and service

Deduplication Tuning (Pro)

Configure how DefectDojo identifies and manages duplicate findings

Editing Findings

Change a Finding’s Status, or add more metadata as you resolve an issue

Enabling Deduplication

How to enable Deduplication at the Product or Engagement level

EPSS / KEV

How DefectDojo Pro enriches Findings with EPSS and CISA KEV data, when it syncs, and how it drives priority

Export Findings

Export findings and engagements as CSV or Excel

Finding Status Definitions

A quick reference to Finding status: Open, Verified, Accepted..

Global Component Deduplication (Pro)

Deduplicate Software Composition Analysis Findings by component name and version across all Products

Introduction to Findings

The main workflow and vulnerability tracking system of DefectDojo

Risk Acceptances

Leveraging Risk Acceptances in DefectDojo OS

Leveraging Risk Acceptances in DefectDojo Pro

Similar Findings

Find related Findings on the View Finding page and manually link them as duplicates

Find related Findings on the View Finding page and manually link them as duplicates