Skip to content

Commit 3a072ac

Browse files
authored
Release-Mar-17-2025 : Release 7 rules and announce 4 rules. (#20888)
1 parent 5d0fe05 commit 3a072ac

File tree

3 files changed

+124
-40
lines changed

3 files changed

+124
-40
lines changed
Lines changed: 103 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,103 @@
1+
---
2+
title: "2025-03-17"
3+
type: table
4+
pcx_content_type: release-notes
5+
sidebar:
6+
order: 797
7+
tableOfContents: false
8+
---
9+
10+
import { RuleID } from "~/components";
11+
12+
<table style="width: 100%">
13+
<thead>
14+
<tr>
15+
<th>Ruleset</th>
16+
<th>Rule ID</th>
17+
<th>Legacy Rule ID</th>
18+
<th>Description</th>
19+
<th>Previous Action</th>
20+
<th>New Action</th>
21+
<th>Comments</th>
22+
</tr>
23+
</thead>
24+
<tbody>
25+
<tr>
26+
<td>Cloudflare Managed Ruleset</td>
27+
<td>
28+
<RuleID id="28b2a12993a04e62a98abcd9e59ec18a" />
29+
</td>
30+
<td>100725</td>
31+
<td>Fortinet FortiManager - Remote Code Execution - CVE:CVE-2023-42791, CVE:CVE-2024-23666</td>
32+
<td>Log</td>
33+
<td>Block</td>
34+
<td></td>
35+
</tr>
36+
<tr>
37+
<td>Cloudflare Managed Ruleset</td>
38+
<td>
39+
<RuleID id="f253d755910e4998bd90365d1dbf58df" />
40+
</td>
41+
<td>100726</td>
42+
<td>Ivanti - Remote Code Execution - CVE:CVE-2024-8190</td>
43+
<td>Log</td>
44+
<td>Block</td>
45+
<td></td>
46+
</tr>
47+
<tr>
48+
<td>Cloudflare Managed Ruleset</td>
49+
<td>
50+
<RuleID id="19ae0094a8d845a1bb1997af0ad61fa7" />
51+
</td>
52+
<td>100727</td>
53+
<td>Cisco IOS XE - Remote Code Execution - CVE:CVE-2023-20198</td>
54+
<td>Log</td>
55+
<td>Block</td>
56+
<td></td>
57+
</tr>
58+
<tr>
59+
<td>Cloudflare Managed Ruleset</td>
60+
<td>
61+
<RuleID id="83a677f082264693ad64a2827ee56b66" />
62+
</td>
63+
<td>100728</td>
64+
<td>Sitecore - Remote Code Execution - CVE:CVE-2024-46938</td>
65+
<td>Log</td>
66+
<td>Block</td>
67+
<td></td>
68+
</tr>
69+
<tr>
70+
<td>Cloudflare Managed Ruleset</td>
71+
<td>
72+
<RuleID id="166b7ce85ce443538f021228a6752a38" />
73+
</td>
74+
<td>100729</td>
75+
<td>Microsoft SharePoint - Remote Code Execution - CVE:CVE-2023-33160</td>
76+
<td>Log</td>
77+
<td>Block</td>
78+
<td></td>
79+
</tr>
80+
<tr>
81+
<td>Cloudflare Managed Ruleset</td>
82+
<td>
83+
<RuleID id="35fe23e7bd324d00816c82d098d47b69" />
84+
</td>
85+
<td>100730</td>
86+
<td>Pentaho - Template Injection - CVE:CVE-2022-43769, CVE:CVE-2022-43939</td>
87+
<td>Log</td>
88+
<td>Block</td>
89+
<td></td>
90+
</tr>
91+
<tr>
92+
<td>Cloudflare Managed Ruleset</td>
93+
<td>
94+
<RuleID id="2ce80fe815254f25b3c8f47569fe1e0d" />
95+
</td>
96+
<td>100700</td>
97+
<td>Apache SSRF vulnerability CVE-2021-40438</td>
98+
<td>N/A</td>
99+
<td>Block</td>
100+
<td></td>
101+
</tr>
102+
</tbody>
103+
</table>

src/content/docs/waf/change-log/scheduled-changes.mdx

Lines changed: 16 additions & 38 deletions
Original file line numberDiff line numberDiff line change
@@ -23,69 +23,47 @@ import { RuleID } from "~/components";
2323
</thead>
2424
<tbody>
2525
<tr>
26-
<td>2025-03-10</td>
2726
<td>2025-03-17</td>
27+
<td>2025-04-01</td>
2828
<td>Log</td>
29-
<td>100725</td>
29+
<td>100732</td>
3030
<td>
31-
<RuleID id="28b2a12993a04e62a98abcd9e59ec18a" />
31+
<RuleID id="8b8074e73b7d4aba92fc68f3622f0483" />
3232
</td>
33-
<td>Fortinet FortiManager - Remote Code Execution - CVE:CVE-2023-42791, CVE:CVE-2024-23666</td>
33+
<td>Sitecore - Code Injection - CVE:CVE-2025-27218</td>
3434
<td>This is a New Detection</td>
3535
</tr>
3636
<tr>
37-
<td>2025-03-10</td>
3837
<td>2025-03-17</td>
38+
<td>2025-04-01</td>
3939
<td>Log</td>
40-
<td>100726</td>
40+
<td>100733</td>
4141
<td>
42-
<RuleID id="f253d755910e4998bd90365d1dbf58df" />
42+
<RuleID id="8350947451a1401c934f5e660f101cca" />
4343
</td>
44-
<td>Ivanti - Remote Code Execution - CVE:CVE-2024-8190</td>
44+
<td>Angular-Base64-Upload - Remote Code Execution - CVE:CVE-2024-42640</td>
4545
<td>This is a New Detection</td>
4646
</tr>
4747
<tr>
48-
<td>2025-03-10</td>
4948
<td>2025-03-17</td>
49+
<td>2025-04-01</td>
5050
<td>Log</td>
51-
<td>100727</td>
51+
<td>100734</td>
5252
<td>
53-
<RuleID id="19ae0094a8d845a1bb1997af0ad61fa7" />
53+
<RuleID id="a9ec9cf625ff42769298671d1bbcd247" />
5454
</td>
55-
<td>Cisco IOS XE - Remote Code Execution - CVE:CVE-2023-20198</td>
55+
<td>Apache Camel - Remote Code Execution - CVE:CVE-2025-29891</td>
5656
<td>This is a New Detection</td>
5757
</tr>
5858
<tr>
59-
<td>2025-03-10</td>
6059
<td>2025-03-17</td>
60+
<td>2025-04-01</td>
6161
<td>Log</td>
62-
<td>100728</td>
62+
<td>100735</td>
6363
<td>
64-
<RuleID id="83a677f082264693ad64a2827ee56b66" />
64+
<RuleID id="3d6bf99039b54312a1a2165590aea1ca" />
6565
</td>
66-
<td>Sitecore - Remote Code Execution - CVE:CVE-2024-46938</td>
67-
<td>This is a New Detection</td>
68-
</tr>
69-
<tr>
70-
<td>2025-03-10</td>
71-
<td>2025-03-17</td>
72-
<td>Log</td>
73-
<td>100729</td>
74-
<td>
75-
<RuleID id="166b7ce85ce443538f021228a6752a38" />
76-
</td>
77-
<td>Microsoft SharePoint - Remote Code Execution - CVE:CVE-2023-33160</td>
78-
<td>This is a New Detection</td>
79-
</tr>
80-
<tr>
81-
<td>2025-03-10</td>
82-
<td>2025-03-17</td>
83-
<td>Log</td>
84-
<td>100730</td>
85-
<td>
86-
<RuleID id="35fe23e7bd324d00816c82d098d47b69" />
87-
</td>
88-
<td>Pentaho - Template Injection - CVE:CVE-2022-43769, CVE:CVE-2022-43939</td>
66+
<td>Progress Software WhatsUp Gold - Remote Code Execution - CVE:CVE-2024-4885</td>
8967
<td>This is a New Detection</td>
9068
</tr>
9169
</tbody>

src/content/release-notes/waf.yaml

Lines changed: 5 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -5,11 +5,14 @@ productLink: "/waf/"
55
productArea: Application security
66
productAreaLink: /fundamentals/reference/changelog/security/
77
entries:
8-
- publish_date: "2025-03-10"
9-
scheduled_date: "2025-03-17"
8+
- publish_date: "2025-03-17"
9+
scheduled_date: "2025-04-01"
1010
individual_page: true
1111
scheduled: true
1212
link: "/waf/change-log/scheduled-changes/"
13+
- publish_date: "2025-03-17"
14+
individual_page: true
15+
link: "/waf/change-log/2025-03-17/"
1316
- publish_date: "2025-03-11"
1417
individual_page: true
1518
link: "/waf/change-log/2025-03-11-emergency/"

0 commit comments

Comments
 (0)