Vulnerability Management

This release includes the following enhancements to the management of security vulnerabilities:

Ability to Copy Suppressed Vulnerabilities and Exclusion Analysis
Enhanced Support for Exporting and Importing Suppressed Vulnerabilities and Exclusion Analysis

Ability to Copy Suppressed Vulnerabilities and Exclusion Analysis

Previously, users could not copy suppressed security vulnerabilities and exclusion analysis of all security vulnerabilities—associated with copied inventory items—from the source project to the target project during a project copy.

Starting in this release, Code Insight supports copying all suppressed security vulnerabilities and exclusion analysis of all security vulnerabilities—associated with copied inventory items—from the source project into the target project as part of the project copy process.

All suppressed security vulnerabilities and exclusion analysis of security vulnerabilities—associated with the copied inventory items in the target project—appear in the Security Vulnerabilities window (which opens when you click the Vulnerabilities bar graph for a copied inventory item) and on the Project subtab of the Suppressed Vulnerabilities tab on the Data Library page.

Enhanced Support for Exporting and Importing Suppressed Vulnerabilities and Exclusion Analysis

Previously, suppressed security vulnerabilities and exclusion analysis of all security vulnerabilities—associated with exported or imported inventory items—were not included during the project export or import process.

Starting with this release, Code Insight now supports exporting and importing of all suppressed security vulnerabilities (suppressed at the project level only) and exclusion analysis of all security vulnerabilities—associated with exported or imported inventory items—as part of the project export or import process.

After a project import, all suppressed security vulnerabilities (suppressed at the project level only) and exclusion analysis of all security vulnerabilities—associated with the imported inventory items in the target project—appear in the Security Vulnerabilities window (which opens when you click the Vulnerabilities bar graph for a copied inventory item) and on the Project subtab of the Suppressed Vulnerabilities tab on the Data Library page.