Documentation on the OpenRMF application, including scripts to run the whole stack as well as just infrastructure with documentation on using the tool.
Describe the bug
When you are uploading a SCAP XML file to update a checklist (not new), it copies over all VULNs and all information, not just PASS/FAIL and Finding Details.
To Reproduce
Steps to reproduce the behavior:
add a SCAP to create a new checklist entry
update items that are Not Reviewed and not pass/fail that SCAP does not check
add comments to those that the SCAP marked as Not a Finding or Open as well
save that checklist
update a newer SCAP for the same checklist type and hostname
notice all VULN info is updated, including those not scanned as Not Reviewed, and any finding details, comments, etc. are lost!
Expected behavior
It only updates PASS/FAIL information for Finding Details and Status. Comments, Severity Override info should be left as-is in the checklist.
Additional context
Impacts all versions up to the latest 1.7 so has to be a patch.
Describe the bug When you are uploading a SCAP XML file to update a checklist (not new), it copies over all VULNs and all information, not just PASS/FAIL and Finding Details.
To Reproduce Steps to reproduce the behavior:
Expected behavior It only updates PASS/FAIL information for Finding Details and Status. Comments, Severity Override info should be left as-is in the checklist.
Additional context Impacts all versions up to the latest 1.7 so has to be a patch.