Professional

Manually creating issues for reports

  • Last updated: September 22, 2026

  • Read time: 2 Minutes

While manually testing, you may identify vulnerabilities that aren't automatically detected by Burp. You can create issues for these to make sure that they are included in your report.

To create an issue:

  1. Select the content that you want to add to the issue as evidence. You can select:

    • One or more rows in Proxy > HTTP history or Target > Site map.

    • A request or response, or part of one, in the message editor.

  2. Right-click your selection and select Create an issue. In the message editor, select Record an issue > Create an issue instead.

    The Create an issue dialog opens. Burp populates the HTTP service and path from the first selected request. If you selected multiple requests or responses, the dialog also shows how many it will attach.

  3. Fill in the issue details:

    • Name - A label that identifies the issue.

    • HTTP service - The protocol, port, and domain for the issue.

    • Path - The URL path to the issue location.

    • Issue severity - High, medium, low, or information.

    • Issue confidence - Tentative, firm, or certain.

    • Issue detail - An optional description of the issue.

    • Remediation - An optional description of the steps that you can take to mitigate the issue.

  4. Click Create issue.

Burp adds the selected requests and responses to the issue as evidence.

The issue is saved to your project file and can be viewed and managed in the All issues panel, just like automatically generated issues.

Adding evidence to an existing issue

You can also add evidence to a manually created issue after you create it. For example, for a stored issue, you could add both the request that stores malicious input and the request that retrieves and executes it.

To add evidence to a manually created issue:

  1. [Optional] If you want to highlight part of the message in the issue entry, select the relevant part of a request or response in the message editor.

  2. Right-click the message editor and select Record an issue > Add to manually created issue. The Add to an issue dialog opens.

  3. Use the search box to find the manually created issue that you want to add the evidence to.

  4. Select the issue from the table.

  5. Click Add to issue.

Burp adds the request and response to the issue as evidence.

You can customize and sort the Add to issue table contents. For more information, see Customizing Burp's tables.