Skip to content

Create issue from vulnerability generates empty issue

Summary

Creating an issue from a vulnerability will result in an empty issue.

Steps to reproduce

  1. Open a project's security dashboard
  2. Click on a vulnerability
  3. Click create issue

Example Project

What is the current bug behavior?

Issue title and description don't have content.

What is the expected correct behavior?

Title to have name of the vulnerability and description to have vulnerability details.

Relevant logs and/or screenshots

image

Output of checks

This bug happens on GitLab.com

Results of GitLab environment info

Expand for output related to GitLab environment info

(For installations with omnibus-gitlab package run and paste the output of:
`sudo gitlab-rake gitlab:env:info`)

(For installations from source run and paste the output of:
`sudo -u git -H bundle exec rake gitlab:env:info RAILS_ENV=production`)

Results of GitLab application Check

Expand for output related to the GitLab application check

(For installations with omnibus-gitlab package run and paste the output of: sudo gitlab-rake gitlab:check SANITIZE=true)

(For installations from source run and paste the output of: sudo -u git -H bundle exec rake gitlab:check RAILS_ENV=production SANITIZE=true)

(we will only investigate if the tests are passing)

Possible fixes

  • ee/app/views/vulnerabilities/issue_description.md.erb is not being populated properly. Need to make sure the vulnerability object is pulling all of the appropriate data.

/cc @matt_wilson @theoretick @jschafer

Edited by Jonathan Schafer