With this release we have expanded the WAF configuration to protect Magento stores from the vulnerabilities in CVE-2022-24086. The configuration has been rolled out in the past week.

We have placed the NGINX configuration at /data/web/nginx/server.cve_2022_24086. If you’re experiencing problems with this configuration and your Magento store is up to date, feel free to comment the contents of the file to make it inactive.