Added virtual patches for CVE-2022-22963 and CVE-2022-22965

ngwaf-rulesadded
  • Added Virtual patch: CVE-2022-22963: Detects remote code execution in Spring Cloud Function by malicious Spring Expression.
  • Added Virtual patch: CVE-2022-22965: Detects Spring Framework RCE via Data Binding on JDK 9+.
  • Added Anomaly Signal: CVE-2022-22965-PROBE: Detects probing for CVE-2022-22965.

Prior change: Added LOG4J-JNDI signal

Following change: Added anomaly signal