OWASP grouping not working correctly at instance level
As noted here in VulnerabilitiesRead::Finder
we are limiting the filtering option to only project and group level and therefore the results displayed in the group by owasp option are without the owasp filter being applied in the query.
Verification steps:
-
On the security center, add project https://gitlab.com/gitlab-org/govern/threat-insights-demos/verification-projects/verify-identifier-name-injestion
-
Visit the instance security dashboard and OWASP top 10 2017 grouping should show counts and list the vulnerabilities for every category.
Edited by Bala Kumar