Remediating Application Vulnerability Response vulnerabilities

  • Release version: Zurich
  • Updated July 31, 2025
  • 2 minutes to read
  • Summarize
    Summarized using AI
    This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.

    Summary of Remediating Application Vulnerability Response vulnerabilities

    Monitoring and remediating Application Vulnerability Response (AVR) vulnerabilities is a manual, structured process that starts with reviewing the status of application vulnerable items (AVITs) and concludes with their closure once remediated. The Zurich release of Application Vulnerability Response provides tools and procedures designed to enhance the efficiency and productivity of this remediation workflow.

    Show full answer Show less

    Key Features

    • Rule Validation: Ensure Configuration Item (CI) Lookup and Assignment rules for AVITs are correctly configured to identify applications and assign remediation tasks automatically. Guidance is available for revising these rules to fit your environment.
    • Remediation Target Tracking: Validate and manage remediation target rules linked to AVITs, which are applied when AVITs are imported. This helps track the remediation progress accurately.
    • Dashboards and Reporting: Use built-in dashboards and reports to monitor AVIT aging and remediation status. Activating the Performance Analytics for Vulnerability Response application enables roles such as App-Sec Managers and Security Champions to access tailored dashboards, including the Application Vulnerability Response Overview and My Application Vulnerabilities dashboards, facilitating focused monitoring of vulnerabilities.
    • Risk and Assignment Management: Review and update AVIT risks as necessary and reassign items to appropriate groups for remediation, ensuring prioritization and accountability.
    • Automated Rescanning and Closure: Third-party vulnerability scans trigger automatic rescans. AVITs marked as Fixed are automatically closed upon import, while unresolved AVITs are reopened for further action.
    • Integration with Veracode: For AVITs sourced from Veracode, detailed scan data including HTTP requests/responses and solution recommendations are accessible directly within the Application Vulnerable Item records and Vulnerability Response workspaces, enhancing insight into remediation actions.

    Practical Benefits

    This remediation process enables ServiceNow customers to effectively monitor, prioritize, and remediate application vulnerabilities with clarity and control. The integration of automated rules, analytics dashboards, and third-party scan data helps streamline vulnerability management workflows, reduces manual effort, and improves response times, ultimately enhancing application security posture.

    Monitoring remediation is a process that begins with reviewing status and ends with closing application vulnerable items (AVITs). Application Vulnerability Response offers tools and procedures to make that process more productive and efficient.

    Application Vulnerability Response remediation process

    Application vulnerable item remediation is done manually.

    An overview of the process:

    Get more details from Veracode

    Select Get More Details on application vulnerable items (AVITs) that have Veracode as the Source on the Application Vulnerable Item [sn_vul_app_vulnerable_item] table or from the list views in the Vulnerability Response Workspaces to view the following Veracode data.

    • HTTP Source request and Source response details for Dynamic Application Security Testing (DAST) scans are displayed on the HTTP Request/Response related list.
    • Solution recommendations from Veracode are displayed on the Findings related list.
    • HTTP Source request, Source response, and recommendations are displayed on the Details tab In the Vulnerability Response Vulnerability Response workspaces.
    • The Description column is supported on the Application Vulnerable Item [sn_vul_app_vulnerable_item] table.