owasp-modsecurity / ModSecurity

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based programming language which provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analysis.
https://www.modsecurity.org
Apache License 2.0
8.31k stars 1.61k forks source link

About CVE-2024-46292 #3274

Open airween opened 1 month ago

airween commented 1 month ago

A CVE was published on October 9 2024:

CVE-2024-46292

We wrote a blog post where we try to summarize what happened:

https://modsecurity.org/20241011/about-cve-2024-46292-2024-october/

If you have any question or want to discuss anything you can ask here.