kasunkv / owasp-zap-vsts-task

Visual Studio Team Services build/release task for running OWASP ZAP automated security tests
MIT License
30 stars 11 forks source link

Report Generator -Not generating HTML report and it is running Active Scan when checkbox is unchecked #20

Open ghost opened 6 years ago

ghost commented 6 years ago

Hi,

We love your plugin but unfortunately it is not working correctly. 1) We have unchecked the checkbox for "Active Scan" but it still does an Active Scan 2) It indicated report is generated, but we check the default release folder, there is nothing there and we search throughout the drive, there is no such file

Logs 2018-07-24T07:26:19.9199822Z ##[section]Starting: OWASP ZAP Scan 2018-07-24T07:26:19.9461744Z ============================================================================== 2018-07-24T07:26:19.9461930Z Task : OWASP Zed Attack Proxy Scan 2018-07-24T07:26:19.9462059Z Description : Visual Studio Team Services build/release task for running OWASP ZAP automated security tests 2018-07-24T07:26:19.9462181Z Version : 2.0.7 2018-07-24T07:26:19.9462291Z Author : Kasun Kodagoda 2018-07-24T07:26:19.9462405Z Help : More Information 2018-07-24T07:26:19.9462607Z ============================================================================== 2018-07-24T07:26:21.0420206Z OWASP ZAP Spider Scan Initiated. ID: 1 2018-07-24T07:26:30.8562899Z Spider Scan In Progress: 100% 2018-07-24T07:26:30.8563564Z Spider Scan Complete. 2018-07-24T07:26:30.8564092Z --------------------------------------- 2018-07-24T07:26:30.8567346Z Generating the report... 2018-07-24T07:26:30.9670253Z 2018-07-24T07:26:30.9670728Z ** 2018-07-24T07:26:30.9671173Z Active Scan Result 2018-07-24T07:26:30.9671572Z ** 2018-07-24T07:26:30.9671872Z 2018-07-24T07:26:30.9672211Z -------------------------- 2018-07-24T07:26:30.9672602Z | Alert Type | Count | 2018-07-24T07:26:30.9673009Z -------------------------- 2018-07-24T07:26:30.9673416Z High Risk | 0 2018-07-24T07:26:30.9673742Z Medium Risk | 2 2018-07-24T07:26:30.9674123Z Low Risk | 3 2018-07-24T07:26:30.9674499Z Info Risk | 0 2018-07-24T07:26:30.9674898Z __ 2018-07-24T07:26:30.9808444Z ##[section]Finishing: OWASP ZAP Scan

Settings Set image

image

kasunkv commented 6 years ago

@er1csg I will look in to this issue ASAP. I should be able to give an update about the issue and may be a fix for the issue by the end of this weekend. Thank you for using the task.