Skip to content

Commit 16b4513

Browse files
authored
add 2025-12-18-waf-release.mdx (cloudflare#27217)
Add release note 2025-12-18-waf-release.mdx
1 parent ab889fa commit 16b4513

File tree

1 file changed

+132
-0
lines changed

1 file changed

+132
-0
lines changed
Lines changed: 132 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,132 @@
1+
---
2+
title: "WAF Release - 2025-12-18"
3+
description: Cloudflare WAF managed rulesets 2025-12-18 release
4+
date: 2025-12-18
5+
---
6+
7+
import { RuleID } from "~/components";
8+
9+
This week's release focuses on improvements to existing detections to enhance coverage.
10+
11+
**Key Findings**
12+
13+
- Existing rule enhancements have been deployed to improve detection resilience against broad classes of web attacks and strengthen behavioral coverage.
14+
15+
16+
17+
18+
19+
<table style="width: 100%">
20+
<thead>
21+
<tr>
22+
<th>Ruleset</th>
23+
<th>Rule ID</th>
24+
<th>Legacy Rule ID</th>
25+
<th>Description</th>
26+
<th>Previous Action</th>
27+
<th>New Action</th>
28+
<th>Comments</th>
29+
</tr>
30+
</thead>
31+
<tbody>
32+
<tr>
33+
<td>Cloudflare Managed Ruleset</td>
34+
<td>
35+
<RuleID id="6429f7386b1546cf9dfce631be5ec20c" />
36+
</td>
37+
<td>N/A</td>
38+
<td>Atlassian Confluence - Code Injection - CVE:CVE-2021-26084 - Beta</td>
39+
<td>Log</td>
40+
<td>Block</td>
41+
<td>This rule is merged into the original rule "Atlassian Confluence - Code Injection - CVE:CVE-2021-26084" (ID: <RuleID id="e8c550810618437c953cf3a969e0b97a" />)</td>
42+
</tr>
43+
<tr>
44+
<td>Cloudflare Managed Ruleset</td>
45+
<td>
46+
<RuleID id="9108ddb347b3497e9f9351640d9206e3" />
47+
</td>
48+
<td>N/A</td>
49+
<td>PostgreSQL - SQLi - Copy - Beta</td>
50+
<td>Log</td>
51+
<td>Block</td>
52+
<td>This rule is merged into the original rule "PostgreSQL - SQLi - COPY" (ID: <RuleID id="705a6b5569d5472596910e3ce7265a4e" />)</td>
53+
</tr>
54+
<tr>
55+
<td>Cloudflare Managed Ruleset</td>
56+
<td>
57+
<RuleID id="cb687d73cc954092b58b90b00cd00ba7" />
58+
</td>
59+
<td>N/A</td>
60+
<td>Generic Rules - Command Execution - Body</td>
61+
<td>Log</td>
62+
<td>Disabled</td>
63+
<td>This is a new detection.</td>
64+
</tr>
65+
<tr>
66+
<td>Cloudflare Managed Ruleset</td>
67+
<td>
68+
<RuleID id="bf30657ffa2a424cbf6570dbcd679ad4" />
69+
</td>
70+
<td>N/A</td>
71+
<td>Generic Rules - Command Execution - Header</td>
72+
<td>Log</td>
73+
<td>Disabled</td>
74+
<td>This is a new detection.</td>
75+
</tr>
76+
<tr>
77+
<td>Cloudflare Managed Ruleset</td>
78+
<td>
79+
<RuleID id="6df040f716194070a242967cfd181fb3" />
80+
</td>
81+
<td>N/A</td>
82+
<td>Generic Rules - Command Execution - URI</td>
83+
<td>Log</td>
84+
<td>Disabled</td>
85+
<td>This is a new detection.</td>
86+
</tr>
87+
<tr>
88+
<td>Cloudflare Managed Ruleset</td>
89+
<td>
90+
<RuleID id="39a4fdc37be948709fa7492e7a95bc3a" />
91+
</td>
92+
<td>N/A</td>
93+
<td>SQLi - Tautology - URI - Beta</td>
94+
<td>Log</td>
95+
<td>Block</td>
96+
<td>This rule is merged into the original rule "SQLi - Tautology - URI" (ID: <RuleID id="4c580ea1b5174183b7f5e940b3de2e0a" />)</td>
97+
</tr>
98+
<tr>
99+
<td>Cloudflare Managed Ruleset</td>
100+
<td>
101+
<RuleID id="810e0ffe1dd84e67b159129b432ac90d" />
102+
</td>
103+
<td>N/A</td>
104+
<td>SQLi - WaitFor Function - Beta</td>
105+
<td>Log</td>
106+
<td>Block</td>
107+
<td>This rule is merged into the original rule "SQLi - WaitFor Function" (ID: <RuleID id="b16fe708799441dea3049a99d5faba59" />)</td>
108+
</tr>
109+
<tr>
110+
<td>Cloudflare Managed Ruleset</td>
111+
<td>
112+
<RuleID id="80690005fef342e0ad6bc9af596c741e" />
113+
</td>
114+
<td>N/A</td>
115+
<td>SQLi - AND/OR Digit Operator Digit 2 - Beta</td>
116+
<td>Log</td>
117+
<td>Block</td>
118+
<td>This rule is merged into the original rule "SQLi - AND/OR Digit Operator Digit" (ID: <RuleID id="98e7e08ae64247e2801ca4b388d80772" />)</td>
119+
</tr>
120+
<tr>
121+
<td>Cloudflare Managed Ruleset</td>
122+
<td>
123+
<RuleID id="eaf11ab80b0d491cbb7186f303b2f3fe" />
124+
</td>
125+
<td>N/A</td>
126+
<td>SQLi - Equation 2 - Beta</td>
127+
<td>Log</td>
128+
<td>Block</td>
129+
<td>This rule is merged into the original rule "SQLi - Equation" (ID: <RuleID id="133c6f83cdf14509a4ca6b82a72a6b3a" />)</td>
130+
</tr>
131+
</tbody>
132+
</table>

0 commit comments

Comments
 (0)