Skip to content

Commit 5beb6db

Browse files
committed
Store fingerprint from bearer in unique_id_from_tool
1 parent 241015a commit 5beb6db

2 files changed

Lines changed: 2 additions & 0 deletions

File tree

dojo/settings/settings.dist.py

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1584,6 +1584,7 @@ def saml2_attrib_map_format(din):
15841584
"MobSF Scorecard Scan": DEDUPE_ALGO_HASH_CODE,
15851585
"OSV Scan": DEDUPE_ALGO_HASH_CODE,
15861586
"Nosey Parker Scan": DEDUPE_ALGO_UNIQUE_ID_FROM_TOOL_OR_HASH_CODE,
1587+
# The bearer fingerprint is not unique across multiple scans, so it shouldn't be used for deduplication (https://github.com/DefectDojo/django-DefectDojo/pull/12346#issuecomment-2841561634)
15871588
"Bearer CLI": DEDUPE_ALGO_HASH_CODE,
15881589
"Wiz Scan": DEDUPE_ALGO_UNIQUE_ID_FROM_TOOL_OR_HASH_CODE,
15891590
"Deepfence Threatmapper Report": DEDUPE_ALGO_HASH_CODE,

dojo/tools/bearer_cli/parser.py

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -46,6 +46,7 @@ def get_findings(self, file, test):
4646
sast_source_line=bearerfinding["source"]["start"],
4747
sast_source_file_path=bearerfinding["filename"],
4848
vuln_id_from_tool=bearerfinding["id"],
49+
unique_id_from_tool=bearerfinding["fingerprint"],
4950
)
5051

5152
items.append(finding)

0 commit comments

Comments
 (0)