From 0fb70fc8dbf380e36d993a8aace26a03977c4cbc Mon Sep 17 00:00:00 2001 From: Manuel Sommer Date: Fri, 19 Jan 2024 13:39:40 +0100 Subject: [PATCH] :bug: fix defaulting severity, see last comments in #8778 --- dojo/tools/dependency_track/parser.py | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/dojo/tools/dependency_track/parser.py b/dojo/tools/dependency_track/parser.py index 3150a3f2294..c808c820a92 100644 --- a/dojo/tools/dependency_track/parser.py +++ b/dojo/tools/dependency_track/parser.py @@ -201,8 +201,8 @@ def _convert_dependency_track_finding_to_dojo_finding(self, dependency_track_fin dependency_track_severity = dependency_track_finding['vulnerability']['severity'] vulnerability_severity = self._convert_dependency_track_severity_to_dojo_severity(dependency_track_severity) if vulnerability_severity is None: - logger.warning("Detected severity of %s that could not be mapped for %s. Defaulting to Critical!", dependency_track_severity, title) - vulnerability_severity = "Critical" + logger.warning("Detected severity of %s that could not be mapped for %s. Defaulting to Informational!", dependency_track_severity, title) + vulnerability_severity = "Informational" # Get the cvss score of the vulnerabililty cvss_score = dependency_track_finding['vulnerability'].get("cvssV3BaseScore")