SpiderLabs / owasp-modsecurity-crs

OWASP ModSecurity Core Rule Set (CRS) Project (Official Repository)
https://modsecurity.org/crs
Apache License 2.0
2.44k stars 725 forks source link

Make severities and scores consistent #1732

Closed lifeforms closed 4 years ago

lifeforms commented 4 years ago

In #610, we found some rules with inconsistent severity level versus scoring.

Reviewed these rules manually and updated the scores to the severity actions - For the affected rules, this seems consistent with surrounding rules and our policy.

Thanks to @airween for making the nice table!

fgsch commented 4 years ago

👍 LGTM