NOW LIVE! ColdFusion 2025, 2023, and 2021 July security updates
We are pleased to inform you that we've released security updates for ColdFusion 2025, 2023, and 2021 releases. For more information, see the respective tech notes:
- ColdFusion (2025 release) Update 3
- ColdFusion (2023 release) Update 15
- ColdFusion (2021 release) Update 21
The updates include a newer version of Tomcat, important security fixes that mitigate vulnerabilities related to arbitrary file reads, code execution, privilege escalation, and security feature bypass.
View the security bulletin, APSB25-69, for more information.
Download the updates
What's new in the updates
- Tomcat upgrade
- New JVM flag
- Changes to remote methods
- OEM upgrades
Others
- Bug fixes
- Known issues
Docker and CFFiddle
- CFFiddle is updated with the changes.
- Docker images of the update are avaiable on Docker hub and Amazon ECR.
Please download and apply the updates and provide your feedback.

