logo

NJP

Github Application Vulnerability Integration

Github Application Vulnerability Integration

by Service-now.com

Integrate your GitHub Advanced Security deployment with ServiceNow Vulnerability Response to prioritize and remediate application vulnerabilities

0 installs 0 reviews v30.2.4 Scoped Application Free-ish (consumes 7 tables) 7 tables
Developer Instance Sub-Production

Install Trend

First tracked: 2024-10-30 Latest: 2026-09-09 (0 installs)
View Install Data
Date Install Count Change
2026-09-09 0 -
134 days of no change
2026-04-27 20 -20
20 days of no change
2026-04-06 21 -1
12 days of no change
2026-03-24 22 -1
2026-03-23 23 -1
51 days of no change
2026-01-30 25 -2
2026-01-29 26 -1
2026-01-28 27 -1
4 days of no change
2026-01-23 28 -1
9 days of no change
2026-01-13 29 -1
78 days of no change
2025-10-26 28 +1
12 days of no change
2025-10-13 27 +1
9 days of no change
2025-10-03 26 +1
3 days of no change
2025-09-29 25 +1
7 days of no change
2025-09-21 24 +1
5 days of no change
2025-09-15 23 +1
4 days of no change
2025-09-10 22 +1
70 days of no change
2025-07-01 21 +1
2025-06-30 20 +1
5 days of no change
2025-06-24 19 +1
5 days of no change
2025-06-18 17 +2
2 days of no change
2025-06-15 16 +1
5 days of no change
2025-06-09 15 +1
75 days of no change
2025-03-25 13 +2
46 days of no change
2025-02-06 12 +1
5 days of no change
2025-01-31 11 +1
20 days of no change
2025-01-10 10 +1
71 days of no change
2024-10-30 8 +2

About

**Note:**

**This app version is intended for Unified Security Exposure Management (USEM), a significant architectural upgrade to the Vulnerability Response applications.**

**If you are currently using Vulnerability Response and upgrading to USEM for the first time, you must use the Migration assistant for Unified Security Exposure Management to ensure a safe and successful upgrade. For full details, please refer to the [KB2556844](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB2556844) and [documentation](https://www.servicenow.com/docs/bundle/zurich-security-management/page/product/security-exposure-management-workspace/concept/unified-security-exposure-management-landing-page.html) before proceeding.**

**If you do not intend to upgrade to USEM, please select a version below 30.x when installing or upgrading.**

Integrate your GitHub Advanced Security deployment with ServiceNow Vulnerability Response to prioritize and remediate application vulnerabilities.

Key Features

The GitHub Application Vulnerability Integration is incorporated with the following integrations:

- The Code Scanning Integration provides Static Application Security Testing (SAST) data.
- The Dependabot Integration provides Software Composition Analysis (SCA) data.
- GitHub Secret Scanning Integrations import vulnerabilities for potentially exploitable Client Secrets. 

These integrations are compatible with both cloud-based and on-premises GitHub Advanced Security configurations.

When scanners generate alerts through the code scanning and dependabot integrations, they initiate the creation of a vulnerability in Application Vulnerability Response. The vulnerability's state is determined by the triage flags selected by an end user.

Version History (14)
v30.2.4 2026-08-07 18:57:32
Fixed: An issue where the GitHub Dependabot and Secret Scanning integrations incorrectly swapped the First Found and Last Found dates for vulnerab...
v30.2.1 2026-06-16 16:52:06
Fixed: Enhancements to the GitHub Application Vulnerability Integration application to align with ServiceNow Platform Security guidance. GHSA / CV...
v30.2.0 2026-04-09 15:33:55
Fixed: Updated GitHub integration configuration ACL to allow users with sn_vul_github.configure_integration role to create records in&nbs...
v30.1.0 2025-12-11 14:58:09
  New If Github Application Vulnerability Integration for SecOps is installed, a tile to review the integration status run is displayed in th...
v2.4.4 2026-08-07 18:59:12
Fixed: An issue where the GitHub Dependabot and Secret Scanning integrations incorrectly swapped the First Found and Last Found dates for vulnerabi...
v2.4.2 2026-06-16 16:51:26
Fixed: Enhancements to the GitHub Application Vulnerability Integration application to align with ServiceNow Platform Security guidance. GHSA / CV...
v2.4.1 2026-04-09 15:36:14
Fixed: Updated GitHub integration configuration ACL to allow users with the sn_vul_github.configure_integration role to create records in the&...
v2.3.1 2025-12-11 15:00:07
Removed Admin override check has been removed from the ACLs.
v2.3.0 2025-07-31 15:40:08
Fixed Addressed an issue where the GitHub Repositories Integration was encountering 404 errors when attempting to retrieve custom property values...
v2.2.0 2025-06-06 01:51:32
Fixed: Resolved a gap where AVITs were not created if the CVE was absent in the response. The system is now made to fall back to using the GHSA ID...

+ 4 more versions

ID: 846005701a5c7910163f20f6bd0f2188 · Published: Aug 2026 · Updated: Sep 09, 2026