Rule Update

26-036 (July 21, 2026)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

Git Push
1012584* - GitHub Enterprise Server Command Injection Vulnerability (CVE-2026-3854)


Tomcat Tribes NioReceiver
1012610 - Apache Tomcat EncryptInterceptor Bypass Vulnerability (CVE-2026-34486)


Web Server Common
1012596* - Microsoft Exchange Server HTTP NTLM Password Spray


Web Server HTTPS
1012592* - Allegra Cross-Site Scripting Authentication Bypass Vulnerability(CVE-2026-11443)
1012613 - WordPress REST API Batch Route Confusion SQL Injection Vulnerability (CVE-2026-63030)


Web Server Nagios
1012614 - Nagios Log Server Command Injection Vulnerability (CVE-2025-34322)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.

Featured Stories