WAF – WAF Release – 2025-10-03

WAF – WAF Release – 2025-10-03

Managed Ruleset Updated

This update introduces 21 new detections in the Cloudflare Managed Ruleset (all currently set to Disabled mode to preserve remediation logic and allow quick activation if needed). The rules cover a broad spectrum of threats – SQL injection techniques, command and code injection, information disclosure of common files, URL anomalies, and cross-site scripting.

RulesetRule IDLegacy Rule IDDescriptionPrevious ActionNew ActionComments
Cloudflare Managed Ruleset0d02c2fb14eb4cec9c2e2b58d61fac74100902Generic Rules – Command Execution – 2N/ADisabledThis is a New Detection
Cloudflare Managed Rulesetc3079865ce9a41368657026b514aeeb8100908Generic Rules – Command Execution – 3N/ADisabledThis is a New Detection
Cloudflare Managed Ruleset107ae2922b654bb28df7ca978d46a6f4100910Generic Rules – Command Execution – 4N/ADisabledThis is a New Detection
Cloudflare Managed Ruleset68bdb75ae6d24e139a83e5731bd0a329100915Generic Rules – Command Execution – 5N/ADisabledThis is a New Detection
Cloudflare Managed Rulesetea04bb580f7d400386c7dc1d5e51450a100899Generic Rules – Content-Type AbuseN/ADisabledThis is a New Detection
Cloudflare Managed Ruleset233364f656ff42b8acc41dcd7996012f100914Generic Rules – Content-Type InjectionN/ADisabledThis is a New Detection
Cloudflare Managed Ruleset1aa695281c954513be3d003b93209312100911Generic Rules – Cookie Header InjectionN/ADisabledThis is a New Detection
Cloudflare Managed Rulesetd9f9e4f5bf11489da52dccb40f373b3f100905Generic Rules – NoSQL InjectionN/ADisabledThis is a New Detection
Cloudflare Managed Ruleset5a1897b714e044a887c0f3f078a0ed04100913Generic Rules – NoSQL Injection – 2N/ADisabledThis is a New Detection
Cloudflare Managed Ruleset4d6fd28df4f1494e95e70d2c5d649624100907Generic Rules – Parameter PollutionN/ADisabledThis is a New Detection
Cloudflare Managed Ruleset61181e3af5304f7396c7d01cfd1c674e100906Generic Rules – PHP Object InjectionN/ADisabledThis is a New Detection
Cloudflare Managed Ruleseted5190bfbe1b45a6a645126334c88168100904Generic Rules – Prototype PollutionN/ADisabledThis is a New Detection
Cloudflare Managed Ruleset3ec33bc5ac77495a9f55020e3ab43f7e100897Generic Rules – Prototype Pollution 2N/ADisabledThis is a New Detection
Cloudflare Managed Rulesetc6d752c4909e4b7e8eff6c780d94ee22100903Generic Rules – Reverse ShellN/ADisabledThis is a New Detection
Cloudflare Managed Rulesetcaf37e7800bb4635bcc2eefcd5add8e3100909Generic Rules – Reverse Shell – 2N/ADisabledThis is a New Detection
Cloudflare Managed Ruleset475d090baead467c88dfabbb565c78b0100898Generic Rules – SSJI NoSQLN/ADisabledThis is a New Detection
Cloudflare Managed Rulesetf4c7f98934264c9c937eec1212b837a0100896Generic Rules – SSRFN/ADisabledThis is a New Detection
Cloudflare Managed Rulesetefd01b814d144e90b36522b311c4fb00100895Generic Rules – Template InjectionN/ADisabledThis is a New Detection
Cloudflare Managed Ruleset00a9a0d663da4add95b863abd3ed0123100895AGeneric Rules – Template Injection – 2N/ADisabledThis is a New Detection
Cloudflare Managed Rulesete58c0fffee4f4374bd37f2577501a1d9100912Generic Rules – XXEN/ADisabledThis is a New Detection
Cloudflare Managed Rulesetab09ba8d00eb4cdbb7a6a65ddc55cdb6100900Relative Paths – Anomaly HeadersN/ADisabledThis is a New Detection

Source: Cloudflare



Latest Posts

Pass It On
Leave a Comment

Comments

No comments yet. Why don’t you start the discussion?

    Leave a Reply

    Your email address will not be published. Required fields are marked *