via blog.cloudflare.com => original post link
If you are a CloudFlare Pro or above customer you enjoy the protection of the CloudFlare WAF. If you use one of the common web platforms, such as WordPress, Drupal, Plone, WHMCS, or Joomla, then it’s worth checking if the relevant CloudFlare WAF ruleset is enabled.
That’s because CloudFlare pushes updates to these rules automatically when new vulnerabilities are found. If you enable the relevant ruleset for your technology then you’ll be protected the moment new rules are published.
For example, here’s a screenshot of the WAF Settings for a customer who uses WordPress (but doesn’t use Joomla). If CloudFlare pushes rules to the WordPress set then they’ll be protected automatically.