<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Changelog · WAF</title><link>https://developers.cloudflare.com/waf/change-log/</link><description>Updates to Cloudflare's WAF product.</description><language>en-us</language><atom:link href="https://developers.cloudflare.com/waf/change-log/index.xml" rel="self"/><lastBuildDate>Monday, Mar 4, 2024</lastBuildDate><item><title>Scheduled changes</title><link>https://developers.cloudflare.com/waf/change-log/scheduled-changes/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Announcement Date&lt;/th>
&lt;th>Release Date&lt;/th>
&lt;th>Release Behavior&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>2024-03-04&lt;/td>
&lt;td>2024-03-11&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>100627&lt;/td>
&lt;td>...dc6877e2&lt;/td>
&lt;td>Wordpress:Plugin:Bricks Builder Theme - Command Injection - CVE:CVE-2024-25600&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>2024-03-04&lt;/td>
&lt;td>2024-03-11&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>100628&lt;/td>
&lt;td>...ae685218&lt;/td>
&lt;td>ConnectWise - Auth Bypass&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Mar 4, 2024</pubDate></item><item><title>2024-03-04</title><link>https://developers.cloudflare.com/waf/change-log/2024-03-04/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...aa290ad9&lt;/td>
&lt;td>100135D&lt;/td>
&lt;td>XSS - JS On Events&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...9c1c14e6 (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Mar 4, 2024</pubDate></item><item><title>2024-02-26</title><link>https://developers.cloudflare.com/waf/change-log/2024-02-26/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...1d870399&lt;/td>
&lt;td>100546&lt;/td>
&lt;td>XSS - HTML Encoding&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...07c62aeb (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Feb 26, 2024</pubDate></item><item><title>2024-02-20</title><link>https://developers.cloudflare.com/waf/change-log/2024-02-20/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...9a5581d0&lt;/td>
&lt;td>100622B, 100622C&lt;/td>
&lt;td>Ivanti - Command Injection - CVE:CVE-2023-46805, CVE:CVE-2024-21887, CVE:CVE-2024-22024&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...d0b325aa&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Microsoft ASP.NET - Code Injection - Function response.write&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...50c86f85 (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...1b138b3e&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>NoSQL, MongoDB - SQLi - Comparison&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...4ba436bb (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...8f66903c&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>NoSQL, MongoDB - SQLi - Expression&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...f67956b2 (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...2d2e031c&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>PHP - Code Injection&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Disabled&lt;/td>
&lt;td>This detection was released as ...2a1f3a04 (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...824b817c&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>PHP, vBulletin, jQuery File Upload - Code Injection, Dangerous File Upload
- CVE:CVE-2018-9206, CVE:CVE-2019-17132&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...dcd12482 (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Tuesday, Feb 20, 2024</pubDate></item><item><title>2024-02-12</title><link>https://developers.cloudflare.com/waf/change-log/2024-02-12/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...901523c0&lt;/td>
&lt;td>100625&lt;/td>
&lt;td>Jenkins - Information Disclosure - CVE:CVE-2024-23897&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...d5e015dd&lt;/td>
&lt;td>100514&lt;/td>
&lt;td>Log4j Headers&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...dc29b753&lt;/td>
&lt;td>100515B&lt;/td>
&lt;td>Log4j Body Obfuscation&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Feb 12, 2024</pubDate></item><item><title>2024-02-05</title><link>https://developers.cloudflare.com/waf/change-log/2024-02-05/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...52d6027b&lt;/td>
&lt;td>100624&lt;/td>
&lt;td>GoAnywhere - Auth Bypass - CVE:CVE-2024-0204&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...f89ab164&lt;/td>
&lt;td>100626,100626A&lt;/td>
&lt;td>Anomaly:Header:Content-Type - Multiple&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Disabled&lt;/td>
&lt;td>New Detection&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...7736c63c&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>AngularJS - XSS&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...014fc5b9 (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...a02344cb&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Apache HTTP Server - Server-Side Includes&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Disabled&lt;/td>
&lt;td>This detection was released as ...10cae4a8 (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...af52d528&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Command Injection - CVE:CVE-2014-6271&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...d2a0991c (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...b090ba9a&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Command Injection - Nslookup&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This detection was released as ...da3d944c (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...d5a14a5e&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Microsoft ASP.NET - Code Injection&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Disabled&lt;/td>
&lt;td>This detection was released as ...70f4f073 (BETA) in new WAF&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Feb 5, 2024</pubDate></item><item><title>2024-01-22 - Emergency</title><link>https://developers.cloudflare.com/waf/change-log/2024-01-22---emergency-release/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...da07a922&lt;/td>
&lt;td>100623&lt;/td>
&lt;td>Atlassian Confluence - Template Injection - CVE:CVE-2023-22527&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Jan 22, 2024</pubDate></item><item><title>2024-01-17 - Emergency</title><link>https://developers.cloudflare.com/waf/change-log/2024-01-17---emergency-release/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...34ab53c5&lt;/td>
&lt;td>100622&lt;/td>
&lt;td>Ivanti - Auth Bypass, Command Injection - CVE:CVE-2023-46805, CVE:CVE-2024-21887&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Wednesday, Jan 17, 2024</pubDate></item><item><title>2024-01-16</title><link>https://developers.cloudflare.com/waf/change-log/2024-01-16/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...38906cff&lt;/td>
&lt;td>100620&lt;/td>
&lt;td>Microsoft ASP.NET - Remote Code Execution - CVE:CVE-2023-35813&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...84f664a9&lt;/td>
&lt;td>100619&lt;/td>
&lt;td>Liferay - Remote Code Execution - CVE:CVE-2020-7961&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...7d29ec39&lt;/td>
&lt;td>100618&lt;/td>
&lt;td>pfSense - Remote Code Execution - CVE:CVE-2023-42326&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...9016ef33&lt;/td>
&lt;td>100621&lt;/td>
&lt;td>Clerk - Auth Bypass&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Disabled&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Tuesday, Jan 16, 2024</pubDate></item><item><title>2024-01-04</title><link>https://developers.cloudflare.com/waf/change-log/2024-01-04/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...53c7ccde&lt;/td>
&lt;td>100612&lt;/td>
&lt;td>SnakeYAML - CVE:CVE-2022-1471&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Thursday, Jan 4, 2024</pubDate></item><item><title>2023-12-18</title><link>https://developers.cloudflare.com/waf/change-log/2023-12-18/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...1bc977d1&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>DotNetNuke - File Inclusion - CVE:CVE-2018-9126, CVE:CVE-2011-1892, CVE:CVE-2022-31474&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This rule was released as ...76abfd64&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Dec 18, 2023</pubDate></item><item><title>2023-12-14 - Emergency</title><link>https://developers.cloudflare.com/waf/change-log/2023-12-14---emergency-release/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...bb6d4e13&lt;/td>
&lt;td>100615&lt;/td>
&lt;td>Apache Struts - Remote Code Execution - CVE:CVE-2023-50164&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Thursday, Dec 14, 2023</pubDate></item><item><title>2023-11-21</title><link>https://developers.cloudflare.com/waf/change-log/2023-11-21/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...8ed2b1d9&lt;/td>
&lt;td>100611&lt;/td>
&lt;td>WordPress:Plugin:WooCommerce - Unauthorized Administrator Access - CVE:CVE-2023-28121&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...c3b6a372&lt;/td>
&lt;td>100593&lt;/td>
&lt;td>Adobe ColdFusion - Auth Bypass, Remote Code Execution - CVE:CVE-2023-29298, CVE:CVE-2023-38203, CVE:CVE-2023-26360&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Tuesday, Nov 21, 2023</pubDate></item><item><title>2023-11-06 - Emergency</title><link>https://developers.cloudflare.com/waf/change-log/2023-11-06---emergency-release/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...c54e7046&lt;/td>
&lt;td>100614&lt;/td>
&lt;td>Atlassian Confluence - Code Injection - CVE:CVE-2023-22518&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Nov 6, 2023</pubDate></item><item><title>2023-10-30</title><link>https://developers.cloudflare.com/waf/change-log/2023-10-30/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...d59a59db&lt;/td>
&lt;td>100609&lt;/td>
&lt;td>Keycloak - SSRF - CVE:CVE-2020-10770&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Oct 30, 2023</pubDate></item><item><title>2023-10-23</title><link>https://developers.cloudflare.com/waf/change-log/2023-10-23/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...3e3f706d&lt;/td>
&lt;td>100606&lt;/td>
&lt;td>JetBrains TeamCity - Auth Bypass, Remote Code Execution - CVE:CVE-2023-42793&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...469c4a38&lt;/td>
&lt;td>100607&lt;/td>
&lt;td>Progress WS_FTP - Information Disclosure - CVE:CVE-2023-40044&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...7ccccdce&lt;/td>
&lt;td>100608&lt;/td>
&lt;td>Progress WS_FTP - Remote Code Execution - CVE:CVE-2023-40044&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Oct 23, 2023</pubDate></item><item><title>2023-10-11 - Emergency</title><link>https://developers.cloudflare.com/waf/change-log/2023-10-11---emergency-release/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...ec9f34e1&lt;/td>
&lt;td>100604&lt;/td>
&lt;td>Atlassian Confluence - Privilege Escalation - CVE:CVE-2023-22515&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This rule is released for our Cloudflare Free customers as well, rule ID: ...91935fcb (Detection logic update)&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Wednesday, Oct 11, 2023</pubDate></item><item><title>2023-10-04 - Emergency</title><link>https://developers.cloudflare.com/waf/change-log/2023-10-04---emergency-release/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...ec9f34e1&lt;/td>
&lt;td>100604,100605&lt;/td>
&lt;td>Atlassian Confluence - Privilege Escalation - CVE:CVE-2023-22515&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This rule is released for our Cloudflare Free customers as well, rule ID: ...91935fcb&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Tuesday, Oct 3, 2023</pubDate></item><item><title>2023-10-02</title><link>https://developers.cloudflare.com/waf/change-log/2023-10-02/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...34780914&lt;/td>
&lt;td>100532&lt;/td>
&lt;td>Vulnerability scanner activity&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>This rule was released as 100532_BETA in legacy waf and ...6e298ed7 in new WAF&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Oct 2, 2023</pubDate></item><item><title>2023-09-22 - Emergency</title><link>https://developers.cloudflare.com/waf/change-log/2023-09-22---emergency-release/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...066c0c9a&lt;/td>
&lt;td>100602&lt;/td>
&lt;td>Code Injection - CVE:CVE-2023-36845&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...0746d000&lt;/td>
&lt;td>100603&lt;/td>
&lt;td>Information Disclosure - CVE:CVE-2023-28432&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Friday, Sep 22, 2023</pubDate></item><item><title>2023-09-18</title><link>https://developers.cloudflare.com/waf/change-log/2023-09-18/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...25ba9d7c&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>SSRF Cloud&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Disabled&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Sep 18, 2023</pubDate></item><item><title>2023-09-04</title><link>https://developers.cloudflare.com/waf/change-log/2023-09-04/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...c5f041ac&lt;/td>
&lt;td>100597&lt;/td>
&lt;td>Information Disclosure - Path Normalization&lt;/td>
&lt;td>Log&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...50cec478&lt;/td>
&lt;td>100598&lt;/td>
&lt;td>Remote Code Execution - Common Bash Bypass&lt;/td>
&lt;td>Log&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...ec5b0d04&lt;/td>
&lt;td>100599&lt;/td>
&lt;td>Ivanti - Auth Bypass - CVE:CVE-2023-38035&lt;/td>
&lt;td>Log&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...6912c055&lt;/td>
&lt;td>100601&lt;/td>
&lt;td>Malware - Polymorphic Encoder&lt;/td>
&lt;td>Log&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...8242627b&lt;/td>
&lt;td>100146B&lt;/td>
&lt;td>SSRF Local BETA&lt;/td>
&lt;td>Log&lt;/td>
&lt;td>Disabled&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Sep 4, 2023</pubDate></item><item><title>2023-08-21</title><link>https://developers.cloudflare.com/waf/change-log/2023-08-21/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...84dadf5a&lt;/td>
&lt;td>100595&lt;/td>
&lt;td>MobileIron - Auth Bypass - CVE:CVE-2023-35082&lt;/td>
&lt;td>Log&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...48a60154&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>SQLi - Keyword + SubExpress + Comment + BETA&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Disabled&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Monday, Aug 21, 2023</pubDate></item><item><title>2023-08-17 - Emergency</title><link>https://developers.cloudflare.com/waf/change-log/2023-08-17---emergency-release/</link><description>
&lt;table style="width: 100%">
&lt;thead>
&lt;tr>
&lt;th>Ruleset&lt;/th>
&lt;th>Rule ID&lt;/th>
&lt;th>Legacy Rule ID&lt;/th>
&lt;th>Description&lt;/th>
&lt;th>Previous Action&lt;/th>
&lt;th>New Action&lt;/th>
&lt;th>Comments&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>Cloudflare Specials&lt;/td>
&lt;td>...cac42ce2&lt;/td>
&lt;td>100596&lt;/td>
&lt;td>Citrix Content Collaboration ShareFile - Remote Code Execution - CVE:CVE-2023-24489&lt;/td>
&lt;td>N/A&lt;/td>
&lt;td>Block&lt;/td>
&lt;td>N/A&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table></description><pubDate>Thursday, Aug 17, 2023</pubDate></item></channel></rss>