/plushcap/analysis/cloudflare/waf-mitigations-spring4shell

WAF mitigations for Spring4Shell

What's this blog post about?

A set of high profile vulnerabilities, known as Spring4Shell, has been identified affecting the Java Spring Framework and related software components. Four CVEs (Common Vulnerabilities and Exposures) have been released so far, with potential for full remote code execution compromise. Customers using Java Spring and related software components should update to the latest versions by following official Spring project guidance. The Cloudflare WAF team has deployed new managed mitigation rules to protect against these vulnerabilities.

Company
Cloudflare

Date published
March 31, 2022

Author(s)
Michael Tremante, Himanshu Anand

Word count
343

Hacker News points
None found.

Language
English


By Matt Makai. 2021-2024.