Cloudflare Ships WAF Rules for Critical WordPress RCE and SQL Injection Bugs
Cloudflare deployed new firewall rules protecting all customers, including free plans, from an unauthenticated remote code execution flaw and a related SQL injection bug in WordPress. Site owners should still patch immediately.