Skip to main content
Community Manager
April 22, 2020
Question

ColdFusion (2018 release) Update 9 and ColdFusion (2016 release) Update 15 released

  • April 22, 2020
  • 1 reply
  • 1524 views

We are pleased to announce that we have released the updates for the following ColdFusion versions:

 

In this update, apart from fixing the security vulnerabilities, we’ve also added SameSite cookie support for cfcookie.

 

For more information, see the tech notes below:

 

These updates fix security vulnerabilities that are mentioned in the security bulletin,  APSB20-18.

 

Please update your ColdFusion versions today. Let us know if you face any issues while installing the updates. Your feedback is essential to further enhancing the product.

 

We thank you for your continuing support.

This topic has been closed for replies.

1 reply

jal4470
Participant
May 23, 2020

I am getting a 403 forbidden error after updatingt to 14 or greater(CF2016) and 9(CF2018) any insight? I have several instances that I need to update so I need a rinse repeat type of SOP.

 

Charlie Arehart
Community Expert
Community Expert
May 23, 2020

Yes, this is a known issue. See the technote for the update, and it's post installation section. It notes the 403 error and what to do about it.

 

If you still have challenges, write back. If that works for you, do let us know. 

/Charlie (troubleshooter, carehart. org)
jal4470
Participant
May 23, 2020

That didn't work I updated the server.xml with the same secret from the worker.properties and double checked it still getting a 403?