Accept or Reject Mitigations from the Mitigated Flaws Page

Results and Reports

Publication
Results and Reports
Edition date
2022-11-21
Publication date
2022-11-21T22:48:36.735313

You can accept or reject proposed mitigations in the Mitigated Flaws page for both internally developed and third-party applications.

Before You Begin

You must have the Mitigation Approver role to accept or reject proposed mitigations.

Steps

  1. From the Applications page in the Veracode Platform, click Show All Applications with Mitigations.
  2. From the list of applications, click View at the end of the row to see a list of the proposed, accepted, or rejected mitigations for the flaws that Veracode discovered in that application.
  3. Use the Filter field to sort the flaws by ID, severity, and CWE ID.
  4. If you have access to the source code file for the flaw, browse to its location and load it. As in the Triage Flaws page, the source code file is not uploaded to the Veracode Platform but is simply opened by the browser for viewing.
  5. Click the Comments tab to view any comments or mitigations for the flaw.
  6. When you have reviewed the details of the flaw, click either Accept, Reject, or Comment.
  7. Enter a comment (2048 characters or fewer) to explain your action, then click Check in Flaw.

Note: A user with the Mitigation Approver role who has access to your application can also check back in a flaw that you have checked out.