diff --git a/docs/tutorials/reporting.md b/docs/tutorials/reporting.md index a07d78e430..e189b61fd1 100644 --- a/docs/tutorials/reporting.md +++ b/docs/tutorials/reporting.md @@ -279,7 +279,7 @@ The following is the mapping between the native JSON and the Detection Finding f | ResourceType | resources.type | | ResourceDetails | _Not mapped yet_ | | Description | finding_info.desc | -| Risk | unmapped.risk | +| Risk | risk_details _Available from OCSF 1.2_ | | RelatedUrl | unmapped.related_url | | Remediation.Recommendation.Text | remediation.desc | | Remediation.Recommendation.Url | remediation.references | diff --git a/prowler/lib/outputs/json_ocsf/json_ocsf.py b/prowler/lib/outputs/json_ocsf/json_ocsf.py index fb764de4f8..cd98830db6 100644 --- a/prowler/lib/outputs/json_ocsf/json_ocsf.py +++ b/prowler/lib/outputs/json_ocsf/json_ocsf.py @@ -110,7 +110,6 @@ def fill_json_ocsf(finding_output: FindingOutput) -> DetectionFinding: type_name=DetectionFindingTypeID.Create.name, unmapped={ "check_type": finding_output.check_type, - "risk": finding_output.risk, "related_url": finding_output.related_url, "categories": finding_output.categories, "depends_on": finding_output.depends_on, diff --git a/tests/lib/outputs/json_ocsf/json_ocsf_test.py b/tests/lib/outputs/json_ocsf/json_ocsf_test.py index c10607acfc..891b9f690b 100644 --- a/tests/lib/outputs/json_ocsf/json_ocsf_test.py +++ b/tests/lib/outputs/json_ocsf/json_ocsf_test.py @@ -76,7 +76,6 @@ def test_finding_output_cloud_pass_low_muted(self): # Unmapped Data assert finding_json_ocsf.unmapped == { "check_type": finding_output.check_type, - "risk": finding_output.risk, "related_url": finding_output.related_url, "categories": finding_output.categories, "depends_on": finding_output.depends_on,