WAF - WAF Release - 2026-09-25 - Emergency
Update2 days agoUnverifiedAdded Sep 26, 2026
This update provides immediate defense against critical vulnerabilities affecting WordPress and JFrog Artifactory, including path traversal, local file inclusion (LFI), cross-site scripting (XSS), and authentication bypass exploits. Key Findings CVE-2026-87902: A high-severity Path Traversal and Local File Inclusion (LFI) vulnerability affecting WordPress.
Topics: Security
More Cloudflare developer platform releases
Every Cloudflare developer platform release| Date | Release | Type |
|---|---|---|
| Sep 252 days ago | Update | Update |
| Sep 252 days ago | Update | Update |
| Sep 252 days ago | Update | Update |
| Sep 252 days ago | Workers tracing , new getActiveSpan(), recordException(), startSpan(), and setAttributes() APIs unverified Update | Update |
| Sep 252 days ago | Update | Update |
| Sep 243 days ago | Update | Update |
| Sep 243 days ago | R2 - R2 bandwidth usage metrics unverified Update | Update |
| Sep 243 days ago | GA | GA |
Also shipped on Sep 25, 2026
Cloudflare in September 2026| Date | Company | Release | Product | Type |
|---|---|---|---|---|
| Sep 252 days ago | Databricks Apps | GA | ||
| Sep 252 days ago | GitHub Copilot | GA | ||
| Sep 252 days ago | 2026.09.15 unverified | Gradium | Preview | |
| Sep 252 days ago | CLI v0.8.1 | CLI unverified | CodeRabbit | Preview | |
| Sep 252 days ago | Railway | Preview | ||
| Sep 252 days ago | Azure databases and analytics | Preview |