list_vulnerabilities
Retrieve and filter security vulnerability findings by detection tool, type, severity, and status to pinpoint risks.
Instructions
List security vulnerability findings with filtering by tool, type, severity, and status
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| page_token | No | Pagination token from previous response links.next | |
| page_number | No | Page number (>= 1) | |
| filter_type | No | Vulnerability type (e.g. SqlInjection, Xss, CommandInjection, ComponentWithKnownVulnerability) | |
| filter_tool | No | Detection tool: SAST, SCA, IAST, or Infra | |
| filter_status | No | Status: Open, Muted, Remediated, InProgress, or AutoClosed | |
| filter_cvss_base_severity | No | Base severity: Unknown, None, Low, Medium, High, or Critical | |
| filter_cvss_datadog_severity | No | Datadog-adjusted severity: Unknown, None, Low, Medium, High, or Critical | |
| filter_language | No | Programming language filter | |
| filter_ecosystem | No | Ecosystem: PyPI, Maven, NuGet, Npm, RubyGems, Go, Packagist, Deb, Rpm, Apk, etc. | |
| filter_code_location_file_path | No | Filter by file path in source code | |
| filter_fix_available | No | Filter by fix availability | |
| filter_asset_name | No | Asset name (supports wildcards *) | |
| filter_asset_type | No | Asset type: Repository, Service, Host, HostImage, or Image | |
| filter_asset_environments | No | Filter by asset environments | |
| filter_asset_repository_url | No | Filter by repository URL | |
| filter_asset_risks_in_production | No | Filter assets in production | |
| filter_asset_risks_under_attack | No | Filter assets under active attack |