8000 Monthly Chat Agenda June 2025-06-02 · Issue #4153 · coreruleset/coreruleset · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
Monthly Chat Agenda June 2025-06-02 #4153
Open
@fzipi

Description

@fzipi

This is the Agenda for the Monthly CRS Chat.

The chat is going to happen on https://owasp.slack.com in the channel #coreruleset on Monday, June 2th, 2025, at 20:30 CET (CEST during summer in the Northern Hemisphere). That's the 1st Monday of the month. Please note that we have a CRS calendar (maintained by @fzipi).

Archived previous meetings and their decision are here.

What happened in the meantime since the chat last month

Outside development

Inside development

  • The Open WAF Day had very interesting presentations, we'll be uploading them to our website soon.

Rules

  • No new here.

CRS Sandbox

  • No new here

Security

  • No news here.

Plugins

  • No news here.

Documentation and Public Relations

  • No news here

Project Administration and Sponsor relationships

  • We are in talks with a possible new sponsor 🎉

Tools

Testing incl. Seaweed and many future plans

  • No news here.

Containers

  • Released new versions with ModSecurity and ModSecurity-nginx updates

Project discussions and decisions

  • We got this PR for SSTI at PL2: @rx ({{.*}}|{%.*%}|<%[=]?.*%>). A very similar rule 941380 already exists at PL2: @rx {{.*?}}. Do we want to drop the rule 941380 and create this new rule in file 934-attack-generic instead of 941-xss? Or do we extend the existing rule 941380 with t:removeWhiteSpace and maybe other characteristics mentioned in the PR?

Rules development, key project numbers

PRs that have been merged since the last meeting

We merged 15 PRs since the last monthly project chat.

Open PRs

Open PRs marked DRAFT or work in progress or needs action

How to get to our slack and join the meeting?

If you are not yet on the OWASP Slack, here is your invite: https://owasp.org/slack/invite .

Everybody is welcome to join our community chat.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions

      0