logo

NJP

Vulnerability Response and Configuration Compliance for Containers

Vulnerability Response and Configuration Compliance for Containers

by Service-now.com

Bring security and application teams together to remediate your most critical container vulnerabilities quickly and efficiently.

0 installs 0 reviews v30.7.0 Scoped Application Free-ish (consumes 22 tables) 22 tables
Developer Instance Sub-Production

Install Trend

First tracked: 2024-10-30 Latest: 2026-09-09 (0 installs)
View Install Data
Date Install Count Change
2026-09-09 0 -
134 days of no change
2026-04-27 141 -141
144 days of no change
2025-12-03 139 +2
10 days of no change
2025-11-22 138 +1
25 days of no change
2025-10-27 137 +1
5 days of no change
2025-10-21 136 +1
4 days of no change
2025-10-16 135 +1
1 days of no change
2025-10-14 134 +1
4 days of no change
2025-10-09 133 +1
2 days of no change
2025-10-06 132 +1
4 days of no change
2025-10-01 131 +1
6 days of no change
2025-09-24 130 +1
2025-09-23 129 +1
8 days of no change
2025-09-14 128 +1
3 days of no change
2025-09-10 127 +1
5 days of no change
2025-09-04 126 +1
1 days of no change
2025-09-02 125 +1
11 days of no change
2025-08-21 124 +1
4 days of no change
2025-08-16 123 +1
21 days of no change
2025-07-25 122 +1
2 days of no change
2025-07-22 120 +2
2025-07-21 119 +1
6 days of no change
2025-07-14 118 +1
6 days of no change
2025-07-07 117 +1
4 days of no change
2025-07-02 116 +1
1 days of no change
2025-06-30 115 +1
5 days of no change
2025-06-24 114 +1
6 days of no change
2025-06-17 113 +1
5 days of no change
2025-06-11 112 +1
1 days of no change
2025-06-09 110 +2
11 days of no change
2025-05-28 109 +1
12 days of no change
2025-05-15 108 +1
1 days of no change
2025-05-13 107 +1
4 days of no change
2025-05-08 106 +1
1 days of no change
2025-05-06 105 +1
11 days of no change
2025-04-24 104 +1
2025-04-23 103 +1
5 days of no change
2025-04-17 102 +1
3 days of no change
2025-04-13 101 +1
2 days of no change
2025-04-10 100 +1
3 days of no change
2025-04-06 99 +1
1 days of no change
2025-04-04 98 +1
2 days of no change
2025-04-01 97 +1
2025-03-31 96 +1
2 days of no change
2025-03-28 94 +2
2025-03-27 93 +1
10 days of no change
2025-03-16 92 +1
2025-03-15 91 +1
1 days of no change
2025-03-13 90 +1
5 days of no change
2025-03-07 89 +1
1 days of no change
2025-03-05 88 +1
2 days of no change
2025-03-02 87 +1
3 days of no change
2025-02-26 86 +1
5 days of no change
2025-02-20 84 +2
2025-02-19 83 +1
6 days of no change
2025-02-12 81 +2
32 days of no change
2025-01-10 80 +1
7 days of no change
2025-01-02 79 +1
63 days of no change
2024-10-30 74 +5

About

**Note:**

**This app version is intended for Unified Security Exposure Management (USEM), a significant architectural upgrade to the Vulnerability Response applications.**

**If you are currently using Vulnerability Response and upgrading to USEM for the first time, you must use the Migration assistant for Unified Security Exposure Management to ensure a safe and successful upgrade. For full details, please refer to the [KB2556844](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB2556844) and [documentation](https://www.servicenow.com/docs/bundle/zurich-security-management/page/product/security-exposure-management-workspace/concept/unified-security-exposure-management-landing-page.html) before proceeding.**

**If you do not intend to upgrade to USEM, please select a version below 30.x when installing or upgrading.**

 

Vulnerability Response and Configuration Compliance for Containers helps organizations respond to container vulnerabilities quickly and efficiently by connecting security and application teams, and providing real-time visibility into your security posture. Container Vulnerability Response connects the workflow and automation capabilities of the Now Platform® with vulnerability scan data from leading container security vendors to give your teams a single platform for a response that can be shared between security and application teams.

Key Features

The Vulnerability Response and Configuration Compliance for Containers application includes the following capabilities:

- Refer to a Docker image as a configuration item (CI) from the container vulnerable items (CVITs).
- Provide runtime context such as Kubernetes Services, Clusters, Namespaces, and cloud account metadata for security teams so they can make decisions on assignment, remediation target, risk score calculation, and more.
- Assignment rules automatically assign container vulnerabilities to the application teams based on Docker Image labels, Kubernetes cluster/namespace/service information, cloud account ID, cloud account name, cloud region, cloud provider, etc.
- Populate base OS image vulnerable items separately to facilitate independent tracking of these vulnerabilities.
- Provide flexibility to configure granularity of container vulnerable items to track at Docker image level, cluster level, service level, etc.
- Automatically detect new versions of container images being deployed and close vulnerabilities reported on older versions.
- Exception management features for remediation owners to request for exceptions, multi-level approval workflow, and exception rules to automatically defer container vulnerable items.
- PA dashboard, which provides visibility into vulnerability and remediation trends.

Version History (21)
v30.7.0 2026-08-07 18:57:26
Fixed Improved reliability of vulnerability rollup counts on container images. You might see improvements in performance. Rollup counts and metri...
v30.4.4 2026-07-09 16:57:17
Fixed: An issue where state changes on a remediation task were not propagated to its associated vulnerable items (VITs, AVITs, and CVITs) if the i...
v30.4.2 2026-06-16 16:49:35
New: A link lets you navigate from the Wiz configuration module directly to the Configure VI Granularity module where you can configure the keys th...
v30.3.9 2026-05-21 10:57:24
Fixed: Finding-to-container vulnerable item (CVIT) state rollup by scoping the rollup to image_repository and skipping the un-deployed CVIT closure...
v30.3.7 2026-04-29 15:22:56
Fixed: Resolved an issue where migration scheduled jobs were not triggered during upgrade due to stale trigger records, which could result in data...
v30.3.2 2026-04-09 15:33:05
New: Added support for AWS ECS clusters and services in the container vulnerability integration. The integration now builds a unified relationship...
v30.2.4 2026-01-20 14:58:13
Changed: The image repository name format for new and existing discovered container images has been updated to align with the discovery format. Th...
v30.1.1 2025-12-11 14:55:58
Changed: Standardized data model and modularized feature sets across Container Vulnerability Response (CVR) to support Unified Security Exposure ...
v2.19.5 2026-07-09 16:58:21
Fixed: An issue where state changes on a remediation task were not propagated to its associated vulnerable items (VITs, AVITs, and CVITs) if the i...
v2.19.3 2026-06-16 16:50:05
New: A link lets you navigate from the Wiz configuration module directly to the Configure VI Granularity module where you can configure the keys th...

+ 11 more versions

ID: 2e42728ac8933010ba48c8fb8b6cf08a · Published: Aug 2026 · Updated: Sep 09, 2026