Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Map the severity of an application vulnerable item automatically

Application Vulnerability Response severity mapping transforms third-party source severity fields to recognizable fields within Vulnerability Response.

Before you begin

Role required: App-Sec Manager group

About this task

Application Vulnerability Response third-party integrations such as the Veracode Vulnerability Integration provide severity mappings on installation. These maps can be adjusted by changing the fields in existing maps.

Creating or editing a severity map is intended only for customized or non-standard third-party mappings in your environment and requires Application Vulnerability Response and ServiceNow expertise.

Procedure

  1. Navigate to All > Application Vulnerability Response > Administration > Normalized Severity Mapping.

  2. Click New.

  3. Fill in the fields on the form, as appropriate.

FieldDescription
SourceThe name of the source for the severity mapping.
Source valueThe source severity value.
Target valueThe target severity value. Choices are: - 1- Critical - 2 - High - 3 - Medium - 4 - Low - 5 - None
Integration typeIntegration type choices are:- Vulnerability Response - Application Vulnerability Response - National Vulnerability Response - Container Vulnerability Response
  1. Repeat Step 3 for each source severity level.

  2. Select Save.