---
sourceDocument: Australia Security Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/security-management

 Release :

    - australia

ft:locale :

    - en-US

ft:publication_title :

    - Australia Security Management

ft:clusterId :

    - security

bundleId :

    - security

workflow :

    - Technology


---

# Include Closed Fortify on Demand application vulnerable items

# Include Closed Fortify on Demand application vulnerable items {#ariaid-title1}

* Release version: Australia
* 
* Updated March 12, 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 minute to read

By default, Closed application vulnerable items (AVITs) are not created during Fortify Vulnerable Item integration imports. If you want to create them, you must change a system property.

## Before you begin

The Fortify Vulnerability Integration must be installed and running.

Role required: App-Sec Manager

## Procedure

1. In the left navigation Filter navigator text box, type <kbd class="ph userinput">sys_properties.list</kbd>.
2. In the Name search box for the list, enter <kbd class="ph userinput">sn_vul.create_closed</kbd>.
3. Double-click on the Value field and set to True
4. Click the green check mark icon to save.  
   Records in the Closed state in the next Fortify import are created as AVITs in Application Vulnerability Response.

