logo

NJP

Vulnerability Response Integration with Veracode

Vulnerability Response Integration with Veracode

by Service-now.com

Integrate your Veracode deployment with ServiceNow Vulnerability Response to prioritize and remediate application vulnerabilities

0 installs 0 reviews v30.1.3 Scoped Application Free (integration tables[14] not counted) 14 tables
Developer Instance Sub-Production

Install Trend

First tracked: 2024-10-30 Latest: 2026-09-09 (0 installs)
View Install Data
Date Install Count Change
2026-09-09 0 -
134 days of no change
2026-04-27 47 -47
150 days of no change
2025-11-27 46 +1
27 days of no change
2025-10-30 45 +1
30 days of no change
2025-09-29 44 +1
34 days of no change
2025-08-25 43 +1
21 days of no change
2025-08-03 42 +1
45 days of no change
2025-06-18 41 +1
2 days of no change
2025-06-15 40 +1
4 days of no change
2025-06-10 39 +1
47 days of no change
2025-04-23 38 +1
37 days of no change
2025-03-16 37 +1
40 days of no change
2025-02-03 36 +1
95 days of no change
2024-10-30 35 +1

About

**Note:**

**This app version is intended for Unified Security Exposure Management (USEM), a significant architectural upgrade to the Vulnerability Response applications.**

**If you are currently using Vulnerability Response and upgrading to USEM for the first time, you must use the Migration assistant for Unified Security Exposure Management to ensure a safe and successful upgrade. For full details, please refer to the [KB2556844](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB2556844) and [documentation](https://www.servicenow.com/docs/bundle/zurich-security-management/page/product/security-exposure-management-workspace/concept/unified-security-exposure-management-landing-page.html) before proceeding.**

**If you do not intend to upgrade to USEM, please select a version below 30.x when installing or upgrading.**

Vulnerability Response Integration with Veracode imports applications and application vulnerabilities using Application Vulnerability Response. Application Vulnerability Response is a feature in Vulnerability Response that helps you prioritize and remediate vulnerabilities.

Key Features

Imports applications and application vulnerabilities resulting from Dynamic Application Security Testing (DAST), Static Application Security Testing (SAST), Software Composition Analysis (SCA), manual penetration testing results, and Software Bill of Materials (SBOM)s from Veracode into the Application Vulnerability Response feature. Some features of this integration:

- CI Lookup Rules - Lookup rules are used to search for configuration items (CIs) in the CMDB with matching information from the Veracode Vulnerability Integration.
- A shared API ingests DAST, SAST, SCA data and manual penetration testing results.
- A separate API is used to ingest SBOM data.

Version History (9)
v30.1.3 2026-06-16 16:51:29
The following enhancements and changes support internal security directives: Dictionary fields on sn_vul_app_release and sn_vul_veracode_link_proj...
v30.1.2 2026-04-09 15:31:20
Fixed: Enhanced SCA findings processing with validation to skip null/empty CVE IDs and create custom vulnerability entries for non-CVE identifiers...
v30.1.0 2025-12-11 14:55:52
New If Vulnerability Response Integration with Veracode for SecOps is installed, a tile to review the integration status run is displayed in the A...
v4.7.5 2026-04-09 15:30:36
Fixed: Enhanced SCA findings processing with validation to skip null/empty CVE IDs and create custom vulnerability entries for non-CVE identifiers...
v4.7.3 2025-12-11 14:52:57
Fixed Fixed a naming inconsistency in the Veracode Reporting API processing logic. Fixed region-based validation for Veracode configuration to ens...
v4.7.1 2025-07-31 15:39:15
New Added the required mapping from Veracode to AVITs for displaying the 'fixable' status of findings Fixed As part of this defect, fixed the wo...
v4.6.2 2025-03-12 12:34:20
Fixed: The 'Policy compliance state' column is added to the Application Vulnerability Scan Summaries table. The Veracode Deleted Scans API integra...
v4.6.1 2025-01-30 16:10:14
Fixed Veracode Software Bill of Materials (SBOM) Integration imports SBOM documents. Tag values are included in the description when parsing appl...
v4.5.2 2024-11-01 19:17:44
Fixed:Support for changes to the Veracode API for linking scans with application vulnerable items (AVIT)s and additional scan types related to dyna...
ID: ae83e3c273130010b7179398caf6a744 · Published: Jun 2026 · Updated: Sep 09, 2026