I've recently started using Threadfix and am one of the data sources I'm using are results from HP FoD static scans. When I download the FPR files and upload them into Threadfix, the results are very different from what the FoD console is reporting (e.g. a scan on FoD reports a total of 337 issues in one scan, which Threadfix reports over 6000). Are there know issues with the parsing of FoD output?
Many thanks,
Kev
I don't believe so, it's just the native count coming from Fortify.
Kev