Issues

Burp enables you to track potential vulnerabilities, whether automatically detected by Burp Scanner or manually detected during your penetration testing workflow. All issues are recorded in your project file, along with key information to help you resolve or manually investigate the issue.

For more information on how to manually create issues in Burp Suite Professional, see Manually creating issues for reports.

You can choose to view either a task-specific list of issues, which contains issues found by an individual task, or a project-level list containing entries for all issues found across all tasks in your project.

To view the project-level issues list:

  1. Go to the Dashboard tab.
  2. From the bottom dock, select All issues.

To view a task-specific issues list:

  1. Go to the Dashboard tab.
  2. From the Tasks list, select the relevant task.
  3. In the main panel, go to the Issues tab.

From here, you can:

Each item in the Issues table contains the following details:

You can customize and sort the table contents. For more information, see Customizing Burp's tables.

Note

Each issue is only recorded the first time it is found.

Analyzing issue activity

To filter the Issues table, use the buttons at the top of the tab. You can filter using the following conditions:

To filter the issues by a specific term, use the Search bar.

Select an issue to view further information on it in the panel below the table. The following tabs are available:

Managing issues

Right-click an issue to perform further actions:

If you reassign the severity or confidence level, or capture additional evidence for the issue, then the issue is displayed with its updated details. To restore the original details, right-click an issue and select Restore original value from the context menu.

Related pages