Skip to main content

Overview

The vulnerability list view is the starting point for triage. Use it to scan new findings, apply filters, and open a vulnerability detail view when you need deeper context.

Columns

The list view shows these columns. Use the column selector in the table toolbar to show or hide columns.

Filters

Open Filters to narrow the list. Common filters include:
  • Ref scope: default branches or all branches
  • Branch and Tag: search for specific repository refs
  • Vulnerable and Exploitable: yes or no
  • Triaged: yes when exploitable or when human review is required
  • SLA Status: active policy violations or exceptions when policy enforcement is enabled
  • Git History: hide findings that come from secret history scans
  • Type: Code, Dependency, or Secret
  • Secret Assessment: Provider check or Context assessment
  • Status and Resolution
  • Application, Asset, and Organization
  • CWE, Impact, Severity, and Language
  • Detected: date range
  • Assignee and Path
  • Drill-down filters: Scan, Scan Scope, Rule Title, Package, Package Version, Manifest, and Active Dependency

Default filters

By default, the list view shows active statuses and triaged findings:
  • Ref scope is set to Default branches
  • Status is set to open, confirmed, needs_review, in_progress, and in_review
  • Triaged is set to Yes
Clear or adjust filters to include all branches, resolved, closed, or untriaged findings. See Default branch filters for how the default branch set is configured. Selecting specific Branch or Tag references narrows the list to those refs and takes precedence over the default branch scope for that view.

Saved views

Save a filter set for recurring workflows and share it with teammates. See Using saved filters.

Bulk actions

Select one or more vulnerabilities to:
  • Change status or resolution
  • Export selected rows