Skip to content

Commit 0fe1b4a

Browse files
committed
chore: prepare release
1 parent e59e00c commit 0fe1b4a

File tree

1 file changed

+15
-15
lines changed

1 file changed

+15
-15
lines changed

Diff for: plugins/wordpress-rule-exclusions-before.conf

+15-15
Original file line numberDiff line numberDiff line change
@@ -45,7 +45,7 @@ SecRule REQUEST_FILENAME "@endsWith /wp-login.php" \
4545
nolog,\
4646
ctl:ruleRemoveTargetById=932236;ARGS_NAMES:pwd,\
4747
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:pwd,\
48-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
48+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
4949

5050
# Redirect for wp-login/wp-admin
5151
SecRule REQUEST_FILENAME "@rx /wp-(?:login|admin/admin-ajax)\.php$" \
@@ -59,7 +59,7 @@ SecRule REQUEST_FILENAME "@rx /wp-(?:login|admin/admin-ajax)\.php$" \
5959
ctl:ruleRemoveTargetById=942430;ARGS:redirect_to,\
6060
ctl:ruleRemoveTargetById=942431;ARGS:redirect_to,\
6161
ctl:ruleRemoveTargetById=942432;ARGS:redirect_to,\
62-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
62+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
6363

6464
# Reset password
6565
SecRule REQUEST_FILENAME "@endsWith /wp-login.php" \
@@ -88,7 +88,7 @@ SecRule REQUEST_FILENAME "@endsWith /wp-admin/admin-ajax.php" \
8888
nolog,\
8989
ctl:ruleRemoveTargetById=932236;ARGS_NAMES:pwd,\
9090
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:pwd,\
91-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
91+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
9292

9393
#
9494
# [ Comments ]
@@ -105,7 +105,7 @@ SecRule REQUEST_FILENAME "@endsWith /wp-comments-post.php" \
105105
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:comment,\
106106
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:email,\
107107
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:url,\
108-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
108+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
109109

110110
SecRule REQUEST_FILENAME "@endsWith /wp-admin/comment.php" \
111111
"id:9507131,\
@@ -117,7 +117,7 @@ SecRule REQUEST_FILENAME "@endsWith /wp-admin/comment.php" \
117117
ctl:ruleRemoveTargetByTag=attack-sqli;ARGS:newcomment_author_url,\
118118
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:content,\
119119
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:newcomment_author,\
120-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
120+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
121121

122122
# Replying to a comment
123123
SecRule REQUEST_FILENAME "@endsWith /wp-admin/admin-ajax.php" \
@@ -156,7 +156,7 @@ SecRule REQUEST_FILENAME "@rx /wp-json/wp/v[0-9]/global-styles/[0-9]+$" \
156156
ctl:ruleRemoveTargetById=942431;ARGS,\
157157
ctl:ruleRemoveTargetById=942432;ARGS,\
158158
ctl:ruleRemoveTargetById=942440;ARGS,\
159-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
159+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
160160

161161
# Gutenberg
162162
SecRule REQUEST_FILENAME "@rx /wp-json/wp/v[0-9]+/(?:navigation|pages|posts|template-parts|templates)" \
@@ -167,7 +167,7 @@ SecRule REQUEST_FILENAME "@rx /wp-json/wp/v[0-9]+/(?:navigation|pages|posts|temp
167167
nolog,\
168168
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:content,\
169169
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:json.content,\
170-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
170+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
171171

172172
# Gutenberg via rest_route for sites without pretty permalinks
173173
SecRule REQUEST_FILENAME "@endsWith /index.php" \
@@ -205,7 +205,7 @@ SecRule REQUEST_FILENAME "@rx /wp-json/wp/v[0-9]+/media" \
205205
ctl:ruleRemoveById=200002,\
206206
ctl:ruleRemoveById=200004,\
207207
ctl:ruleRemoveTargetById=920120;FILES:file,\
208-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
208+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
209209

210210
# Gutenberg upload image/media via rest_route for sites without pretty permalinks
211211
SecRule REQUEST_FILENAME "@endsWith /index.php" \
@@ -388,7 +388,7 @@ SecRule REQUEST_FILENAME "@endsWith /wp-cron.php" \
388388
nolog,\
389389
ctl:ruleRemoveById=920180,\
390390
ctl:ruleRemoveById=920300,\
391-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
391+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
392392

393393
# Modifying widgets under Appearance --> Widgets
394394
# Rules are disabled for all args because the paramater name keeps on changing
@@ -505,7 +505,7 @@ SecRule REQUEST_FILENAME "@unconditionalMatch" \
505505
ctl:ruleRemoveTargetById=942440;ARGS:wp_http_referer,\
506506
ctl:ruleRemoveTargetById=932236;ARGS:_wpnonce,\
507507
ctl:ruleRemoveTargetById=942450;ARGS:_wpnonce,\
508-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
508+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
509509

510510

511511
# `_wp_original_http_referer` and `referredby` are used by the "Classic-Editor" plugin.
@@ -534,7 +534,7 @@ SecRule ARGS_NAMES "@rx ^_wp_original_http_referer|referredby$" \
534534
ctl:ruleRemoveTargetById=920273;ARGS_NAMES:_wp_original_http_referer,\
535535
ctl:ruleRemoveTargetById=920273;ARGS_NAMES:referredby,\
536536
ctl:ruleRemoveTargetById=920273;REQUEST_BODY,\
537-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
537+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
538538

539539

540540
#
@@ -679,7 +679,7 @@ SecRule REQUEST_FILENAME "@rx /wp-admin/(?:admin|admin-ajax|edit|users)\.php$" \
679679
ctl:ruleRemoveTargetById=932236;ARGS_NAMES:ids,\
680680
ctl:ruleRemoveTargetById=920273;ARGS_NAMES:users[0],\
681681
ctl:ruleRemoveTargetById=942432;ARGS_NAMES:users[0],\
682-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
682+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
683683

684684
#
685685
# [ Content editing ]
@@ -1003,7 +1003,7 @@ SecRule REQUEST_FILENAME "@endsWith /wp-admin/options-permalink.php" \
10031003
ctl:ruleRemoveTargetById=942431;ARGS:permalink_structure,\
10041004
ctl:ruleRemoveTargetById=942521;ARGS:permalink_structure,\
10051005
ctl:ruleRemoveTargetById=920272;REQUEST_BODY,\
1006-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
1006+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
10071007

10081008
# Comments deny list and moderation list
10091009
SecRule REQUEST_FILENAME "@endsWith /wp-admin/options.php" \
@@ -1037,7 +1037,7 @@ SecRule REQUEST_FILENAME "@endsWith /wp-admin/edit.php" \
10371037
t:none,\
10381038
nolog,\
10391039
ctl:ruleRemoveTargetByTag=OWASP_CRS;ARGS:s,\
1040-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
1040+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
10411041

10421042

10431043
#
@@ -1089,7 +1089,7 @@ SecRule REQUEST_FILENAME "@rx /wp-admin/load-(?:scripts|styles)\.php$" \
10891089
ctl:ruleRemoveTargetById=942431;ARGS:load[chunk_2],\
10901090
ctl:ruleRemoveTargetById=942432;ARGS:load[chunk_2],\
10911091
ctl:ruleRemoveTargetById=920100;REQUEST_LINE,\
1092-
ver:'wordpress-rule-exclusions-plugin/1.0.1'"
1092+
ver:'wordpress-rule-exclusions-plugin/1.1.0'"
10931093

10941094
# Wordpress Site Health
10951095
# The wordpress site health page makes use of embedded SQL/PHP

0 commit comments

Comments
 (0)