We just released update 11 for ColdFusion 10. Details here: ColdFusion 10 Update 11. Quite an impressive list of fixes. This also includes a security fix for the web sockets thing that Adam Cameron found a few days ago. (Correction - Adam blogged about it, but Henry Ho found it. Sorry Henry!) For folks running ColdFusion 9, there is a separate security hot fix you should deploy.
Archived Comments
Ray, this one still seems to be outstanding...what's the best way for me to find out when it might be fixed?
https://bugbase.adobe.com/i...
As far as I know - by calling support.
Does Adobe have a ColdFusion security notice newsletter? Would be useful (although you also perform that service).
THanks...Rick..
Yes, go here http://www.adobe.com/suppor... and click notification services.
Hey, it was Henry Ho that discovered the web sockets thing. I just did some research into it.
--
Adam
Ah, thanks for the correction. Editing the post.