Unclaimed project
Are you a maintainer of ModSecurity? Claim this project to take control of your public changelog and roadmap.
Changelog
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based programming language which provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analysis.
Last updated about 18 hours ago
Major changes in v3:
t:htmlEntityDecode transformation; fixed CVE-2025-27110@validateByteRange operatorTIME_MON variable's behaviorstd::make_unique & std::make_shared to create objects in the heapRuleMessage by removing usage of std::shared_ptrFor more information please see CHANGES.