We have subscriptions to this service in AWS. How can I check the current CVEs applied to this rule group?
@dazzer ,
According to this link: AWS Marketplace: Fortinet Managed Rules for AWS WAF - Complete OWASP Top 10
Fortinets WAF rulesets are based on the FortiWeb web application firewall security service signatures, and are updated on a regular basis to include the latest threat information from FortiGuard Labs. The Complete OWASP Top 10 Ruleset provides a comprehensive package for web application protection offered by Fortinet to help cover the entire list of OWASP Top 10 web application threats. Includes protection for SQL Injection, Cross Site Scripting, General and Known Exploits, Malicious Bots and Common Vulnerabilities and Exposures (CVE).
Which means that there is not a single CVE to rule ID to match.
To find out what CVEs are currently included, you may need to open a ticket with the Fortinet team.
regards
| User | Count |
|---|---|
| 2822 | |
| 1431 | |
| 812 | |
| 784 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.