Rule Update

26-013 (March 31, 2026)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

Splunk Enterprise
1012550 - Splunk Enterprise Remote Code Execution Vulnerability (CVE-2024-36985)


Web Server HTTPS
1012545 - Alibaba Fastjson JNDI Injection Vulnerability (CVE-2025-70974)
1012544 - WordPress 'WUX Blog Editor' Remote Code Execution Vulnerability (CVE-2024-9932)


Web Server SharePoint
1012542 - Microsoft SharePoint Server SQL Injection Vulnerability (CVE-2026-20947) - 1


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.

Featured Stories