February 28, 2023

RulesetPolicyDescription of UpdatePrevious ActionNew Action
WAF & OWASP Top ThreatsSQL InjectionThe policy was updated to detect additional SQL and NO-SQL injections and to improve detection accuracyBlockBlock
WAF & OWASP Top ThreatsXSS AttackThe policy has been improved to reduce false positivesBlockBlock
CMS ProtectionWhitelist WordPress admin logged-in usersThis policy was updated to improve the detection of logged-in WordPress adminsAllowAllow
Anti Automation & Bot ProtectionForce Browser Validation on Traffic AnomaliesThis policy has been updated to challenge clients who preset multiple invalid extensions stringCompositeComposite