Fail the build if alerts are discovered

XMLWordPrintable

    • Type: New Feature
    • Resolution: Won't Do
    • Priority: Minor
    • Component/s: zaproxy-plugin
    • None

      At the moment the ZAProxy plugin does not fail the build if alerts are discovered, which means it's difficult to tell when a new vulnerability is detected. Once we have the ability to indicate a list of accepted alerts (see https://github.com/zaproxy/zaproxy/issues/1843) I think we should fail the build if ZAP finds any alerts. We should probably allow this behaviour to be configured within the job though.

            Assignee:
            Goran Sarenkapa
            Reporter:
            Dave Hunt
            Votes:
            2 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: