Feature Highlight: Auto-Merge Findings 

by | Nov 7, 2022 | New Features

Most pentesters use a vulnerability library to save time when building a report. Here, you normally maintain a collection of descriptions for vulnerabilities you’ve written in the past. Then, when you have a similar vulnerability, you copy-paste that description and update it based on the current instance.  

Cyver Core’s Vulnerability Library function does exactly that. When you save a master template to the library, it saves all of the data including description, CVSS, etc. In addition, with the option to create and maintain multiple libraries, you can do so per client or per compliance norm, meaning you don’t have to rewrite descriptions each time you change client.  

Now, with our Auto-Merge functionality, you can skip the step of copying and pasting descriptions. Instead, Cyver Core will automatically import your Vulnerability Library data with your imports, so you can immediately get to work updating and customizing those descriptions to the current instance.  

How Does It Work:  

  1. During Finding import, select your file and click “Next” to go to the “options” screen  
  2. Turn on the “Auto-merge” toggle  
  3. Select the vulnerability library you’d like to auto-merge  
  4. Select what you’d like to merge. Cyver Core allows you to automatically import Title, type, description, classification data (severity, CVSS), notes like recommendations and background information, and compliance checklist data. You can replace existing data, append existing data, or skip for 14 data points.  
  5. Select findings you’d like to merge from the import. These are mapped to vulnerability library items based on title. 
  6. Confirm and wait for the import 
  7. Then, review the imports and, if happy, click confirm  

The findings will be uploaded to the pentest you selected. From there, you can go through and tweak data, add any customizations to the description, etc.  

In addition, you can import this data on a Finding-by-Finding basis after importing your batch file. Here, you can edit the finding from the Pentest and import vulnerability library items based on title. Cyver Core recommends that you make sure naming conventions are the same across tools and in your vulnerability library before using this feature. 

If you’d like to know more about how auto-merge works or if you’d like to see it in action, contact us for a free demo

Feature Highlight: Smarter Planning with the New Calendar Component

Feature Highlight: Smarter Planning with the New Calendar Component

Plan smarter. Move faster. Stay in control.We’re introducing a brand-new Calendar component designed to make planning, scheduling, and task management more intuitive than ever, fully integrated into your workflow. Whether you're managing pentests or coordinating...

How Inconsistent Risk Scoring Breaks Security Metrics Over Time

How Inconsistent Risk Scoring Breaks Security Metrics Over Time

CVSS scores are perhaps the most important part of a pentest report, giving teams a standardised way to understand the severity of vulnerabilities they uncover and prioritise remediation efforts.  But they need to be consistent. With so much change in applications,...

Why Two Pentests of the Same App Rarely Produce the Same Results

Why Two Pentests of the Same App Rarely Produce the Same Results

In 2026, more and more companies are pentesting their applications. This is a good thing, of course – it demonstrates increased awareness amongst brands of the cybersecurity risks they face, and just how much of a threat they can be for their data and systems. But...

The Ceiling of Automated Pentesting (And Where It Still Wins)

The Ceiling of Automated Pentesting (And Where It Still Wins)

Automation in the world of cybersecurity has become a core part of many modern strategies. From continuous vulnerability scanning to real-time network monitoring, automation has enabled organisations to identify and respond to threats at scale, but nowhere is this...