Burp Suite User Forum

Create new post

OWASP top 10 reporting?

Sandeep | Last updated: Jan 27, 2016 07:04AM UTC

Is there a way to customize the reporting to show OWASP top 10 report or how can we get OWASP top 10 reporting? Thanks

Liam, PortSwigger Agent | Last updated: Jan 27, 2016 09:28AM UTC

Hi Sandeep Thanks for your message. Burp doesn’t currently classify its Scanner issues relative to the OWASP top 10. We might add this feature in future (and mappings to other standards too) but we can’t currently promise an ETA for this, sorry.

Liam, PortSwigger Agent | Last updated: Feb 19, 2016 09:13AM UTC

There's nothing in our short term roadmap for OWASP. We've classified the vulnerabilities found by Burp with CWE where possible.

Burp User | Last updated: Aug 12, 2018 11:20PM UTC

Hi, Is this still supported ? Or still in process of getting done? We wanted a similar report mapped to OWASP10 vulnerabilities. Saurabh

Burp User | Last updated: Nov 07, 2019 06:20AM UTC

Hi, We want to go with some compliance standards. Is Burp report supporting the OWASP 10 standards ?

Liam, PortSwigger Agent | Last updated: Nov 07, 2019 11:48AM UTC

Burp doesn't currently classify its Scanner issues relative to the OWASP top 10. We might add this feature in future (and mappings to other standards too) but we can't currently promise an ETA for this, sorry.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.