Securing ColdFusion Applications - DevWeek 2021
By Pete Freitag
It was great to be a speaker at the ColdFusion DevWeek event last week. I spoke on the topic Securing ColdFusion Applications.
In this talk I thought it would be fun to come up with a list of the Top 10 Risks or Issues ColdFusion developers should be aware of. As with any security top ten list, there are more than 10 security issues to be aware of, so this is just a starting point.
- Old Code
- Failure to Delegate
- Security Configuration
- Various Injection Attacks
- Authentication / Authorization
- Remote Code Execution
- SQL Injection
- File System Issues
- Unpatched Known Vulnerabilities
Securing ColdFusion Applications - DevWeek 2021 was first published on June 29, 2021.
If you like reading about security, presentations, or adobe then you might also like:
- Adobe eSeminar on FuseGuard
- Speaking at ColdFusion Summit Online Next Week
- ColdFusion Summit 2022 Slides
- ColdFusion Summit Fall 2020
The Fixinator Code Security Scanner for ColdFusion & CFML is an easy to use security tool that every CF developer can use. It can also easily integrate into CI for automatic scanning on every commit.