Thinking Defensively About Three Recent Lucee Vulnerabilities
Last week, Harsh Jaiswal and Rahul Maini from ProjectDiscovery released some impressive security research on multiple vulnerabilities in Lucee (and Mura CMS and Masa CMS).
Last week, Harsh Jaiswal and Rahul Maini from ProjectDiscovery released some impressive security research on multiple vulnerabilities in Lucee (and Mura CMS and Masa CMS).
So you've looked at CF Components, and kind of understand the basics of how they work.
From: South of Shasta: Software Development, Web Design, Training
So you've looked at CF Components, and kind of understand the basics of how they work.
From: South of Shasta: Software Development, Web Design, Training
A few months ago I was on a mission to remove some of the old broken links on my blog.
From: Pete Freitag's Homepage
A few months ago I was on a mission to remove some of the old broken links on my blog.
From: Pete Freitag's Homepage
Christmas came early this year in Potrero Hill and it was sad news for craft beer drinkers.
Christmas came early this year in Potrero Hill and it was sad news for craft beer drinkers.
Removing the Server Header as of IIS 10 (the version of IIS installed by default on Windows Server 2016, 2019 or 2022) is now much easier than it had been with prior versions of IIS.
From: Pete Freitag's Homepage
Removing the Server Header as of IIS 10 (the version of IIS installed by default on Windows Server 2016, 2019 or 2022) is now much easier than it had been with prior versions of IIS.
From: Pete Freitag's Homepage
A little while ago we had a Mura site (which has recently been upgraded to Masa) with a bunch of blog articles and other content where the "Release Date" field was left empty by accident.
From: South of Shasta: Software Development, Web Design, Training
A little while ago we had a Mura site (which has recently been upgraded to Masa) with a bunch of blog articles and other content where the "Release Date" field was left empty by accident.
From: South of Shasta: Software Development, Web Design, Training
The Spreadsheet CFML library now has improved support for creating CSV from your data
From: cfSimplicity
The Spreadsheet CFML library now has improved support for creating CSV from your data
From: cfSimplicity
The Spreadsheet CFML library now supports fast, memory efficient CSV file processing
From: cfSimplicity
The Spreadsheet CFML library now supports fast, memory efficient CSV file processing
From: cfSimplicity
BackgroundAdobe ColdFusion is vulnerable to a Mass Assignment vulnerability that can result in an attacker being able to modify the value of any variable in any scope within the context of remote CFC methods.
BackgroundAdobe ColdFusion is vulnerable to a Mass Assignment vulnerability that can result in an attacker being able to modify the value of any variable in any scope within the context of remote CFC methods.
A few weeks ago was the annual ColdFusion Summit in Las Vegas. And as expected, the event was very worth the trip! Overall I think everything ran very smoothly — food, sessions, staff, the party, and all the other things you'd expect at CF Summit were the same quality as previous years.
From: South of Shasta: Software Development, Web Design, Training
A few weeks ago was the annual ColdFusion Summit in Las Vegas. And as expected, the event was very worth the trip! Overall I think everything ran very smoothly — food, sessions, staff, the party, and all the other things you'd expect at CF Summit were the same quality as previous years.
From: South of Shasta: Software Development, Web Design, Training
When setting up a server for training purposes I wanted to create a self signed certificate for app1.
From: Pete Freitag's Homepage