
Sign up to save your podcasts
Or
2021-11-09 Weekly News - Episode 125
Watch the video version on YouTube at https://youtu.be/XkpNcuDzhhw
Hosts:
Thanks to our Sponsor - Ortus Solutions
The makers of ColdBox, CommandBox, ForgeBox, TestBox and almost every other Box out there.
A few ways to say thanks back to Ortus Solutions:
Patreon Support
We have 37 patreons providing 93% of the funding for our Modernize or Die Podcasts via our Patreon site: https://www.patreon.com/ortussolutions.
Now offering Annual Memberships, pay for the year and save 10% - great for businesses.
News and Events
ColdBox Mail Services 2.0 Released - Fluent Mail For All
We are so excited to bring you a major release of our cbmailservices module. This module has been around since our initial versions of ColdBox and it has now matured into a modern and fluent library for sending mail.
https://www.ortussolutions.com/blog/coldbox-mail-services-20-fluent-mail-for-all
https://www.forgebox.io/view/cbmailservices
FORGEBOX 6 has landed!
After several months of work, we are proud to announce the release of FORGEBOX 6. This has been a major undertaking spawning several months worth of work, a complete UI revamp for registered users, many bug fixes, multi-key API, and much more. We have also introduced our new Business Accounts (https://forgebox.io/plans) with the ability for organizations to have a simple and human way of managing their final package releases and their teams.
https://www.ortussolutions.com/blog/forgebox-6-has-landed
Tonight!!! - Mid Michigan CFUG Meeting - Using AI and machine learning along with ColdFusion to build a smarter call center with Nick Kwiatkowski
Tuesday 11/9/21 at 7 pm eastern
Using AI and machine learning along with ColdFusion to build a smarter call center at the next Mid-Michigan CFUG meeting Tuesday 11/9/21 at 7 pm eastern.
Michigan State University’s, Nick Kwiatkowski, will be showing how to create voice and text-based chat bots that you can deploy to your contact centers (and help desks!) to help automate frequently asked questions.
Meeting URL: https://bit.ly/3w9LZ7D
Adobe 1 Day Workshop - Adobe ColdFusion Workshop with Damien Bruyndonckx
Wed, November 10, 2021
09:00 - 17:00 CEST EUROPEAN
Join the Adobe ColdFusion Workshop to learn how you and your agency can leverage ColdFusion to create amazing web content. This one-day training will cover all facets of Adobe ColdFusion that developers need to build applications that can run across multiple cloud providers or on-premise.
https://coldfusion-workshop.meetus.adobeevents.com/
Ortus Webinar for November - Javier Quintero - FORGEBOX Business Plan: Introducing Organizations and Teams
November 19th at 11:00 AM Central Time (US and Canada)
In this webinar, Javier Quintero, lead developer of FORGEBOX, will present the new features and the improved UI that is now available on FORGEBOX 6. Moreover, he’ll explore in depth the Business Plan that is directed towards organizations and teams so they can collaborate and support their software building needs. He will show us how to create a new organization, how you can add members to it with specific roles, and how you can control teams, members, packages and publish access.
with Javier Quintero
https://us02web.zoom.us/meeting/register/tZclfuGopjkiG9TIMoC93YbKIcLM1ok_KKlw
Online CF Meetup - "Avoiding Server-Side Request Forgery (SSRF) Vulns in CFML", with Brian Reilly
Thursday, November 11, 2021 - 9:00 AM to 10:00 AM PST
Server-Side Request Forgery (SSRF) vulnerabilities allow an attacker to make arbitrary web requests (and in some cases, other protocols too) from the application environment. Exploiting these flaws can lead to leaking sensitive data, accessing internal resources, and under certain circumstances, remote command execution.
Several ColdFusion/CFML tags and functions can process URLs as file path arguments -- including some tags and and functions that you might not expect. If these tags and functions process unvalidated user-controlled input, this can lead to SSRF vulnerabilities in your applications. In addition to providing a list of affected tags and functions, I'll cover some approaches for identifying and remediating vulnerable code. My goal for this talk is to raise awareness about what may be a security blindspot for some ColdFusion/CFML developers.
https://www.meetup.com/coldfusionmeetup/events/281850930/
ICYMI - Online CF Meetup - "Migrating apps to ColdFusion 2021 from earlier versions", with Charlie Arehart
Thursday, November 4, 2021
9:00 AM to 10:00 AM PDT
While CF2021 has been out now for a year (released in Nov 2020), many orgs may only now be considering moving to it, whether from CF2018 or perhaps CF2016, CF11, CF10, or even earlier. How have the versions changed, in ways that some older code may not run on CF2021? And if you're skipping some CF version/s, what might have tripped you up in those, though not really "new" in CF2021 itself? And what can you do to mitigate such challenges?
In this session, CF troubleshooter Charlie Arehart will share from his experience helping folks make such migrations the past year (and for years with previous CF versions), whether in his role as an independent consultant or providing assistance to the CF community. He'll cover things you can consider in advance of the migration as well as things that might help during or after the migration. Most importantly, this talk will focus on the differences between CF2021 and various earlier CF versions. (Note that he has previously given a talk on migrating CF admin settings, and he plans a future talk on some other aspects of migration.)
https://www.meetup.com/coldfusionmeetup/events/281800384/
Recording: https://www.youtube.com/watch?v=QQBHnQExFqc
CFCasts Content Updates
https://www.cfcasts.com
Just Released
Coming this week
A new series of ForgeBox coming very soon
Send your suggestions at https://cfcasts.com/support
Conferences and Training
Deploy by Digital...
5
77 ratings
2021-11-09 Weekly News - Episode 125
Watch the video version on YouTube at https://youtu.be/XkpNcuDzhhw
Hosts:
Thanks to our Sponsor - Ortus Solutions
The makers of ColdBox, CommandBox, ForgeBox, TestBox and almost every other Box out there.
A few ways to say thanks back to Ortus Solutions:
Patreon Support
We have 37 patreons providing 93% of the funding for our Modernize or Die Podcasts via our Patreon site: https://www.patreon.com/ortussolutions.
Now offering Annual Memberships, pay for the year and save 10% - great for businesses.
News and Events
ColdBox Mail Services 2.0 Released - Fluent Mail For All
We are so excited to bring you a major release of our cbmailservices module. This module has been around since our initial versions of ColdBox and it has now matured into a modern and fluent library for sending mail.
https://www.ortussolutions.com/blog/coldbox-mail-services-20-fluent-mail-for-all
https://www.forgebox.io/view/cbmailservices
FORGEBOX 6 has landed!
After several months of work, we are proud to announce the release of FORGEBOX 6. This has been a major undertaking spawning several months worth of work, a complete UI revamp for registered users, many bug fixes, multi-key API, and much more. We have also introduced our new Business Accounts (https://forgebox.io/plans) with the ability for organizations to have a simple and human way of managing their final package releases and their teams.
https://www.ortussolutions.com/blog/forgebox-6-has-landed
Tonight!!! - Mid Michigan CFUG Meeting - Using AI and machine learning along with ColdFusion to build a smarter call center with Nick Kwiatkowski
Tuesday 11/9/21 at 7 pm eastern
Using AI and machine learning along with ColdFusion to build a smarter call center at the next Mid-Michigan CFUG meeting Tuesday 11/9/21 at 7 pm eastern.
Michigan State University’s, Nick Kwiatkowski, will be showing how to create voice and text-based chat bots that you can deploy to your contact centers (and help desks!) to help automate frequently asked questions.
Meeting URL: https://bit.ly/3w9LZ7D
Adobe 1 Day Workshop - Adobe ColdFusion Workshop with Damien Bruyndonckx
Wed, November 10, 2021
09:00 - 17:00 CEST EUROPEAN
Join the Adobe ColdFusion Workshop to learn how you and your agency can leverage ColdFusion to create amazing web content. This one-day training will cover all facets of Adobe ColdFusion that developers need to build applications that can run across multiple cloud providers or on-premise.
https://coldfusion-workshop.meetus.adobeevents.com/
Ortus Webinar for November - Javier Quintero - FORGEBOX Business Plan: Introducing Organizations and Teams
November 19th at 11:00 AM Central Time (US and Canada)
In this webinar, Javier Quintero, lead developer of FORGEBOX, will present the new features and the improved UI that is now available on FORGEBOX 6. Moreover, he’ll explore in depth the Business Plan that is directed towards organizations and teams so they can collaborate and support their software building needs. He will show us how to create a new organization, how you can add members to it with specific roles, and how you can control teams, members, packages and publish access.
with Javier Quintero
https://us02web.zoom.us/meeting/register/tZclfuGopjkiG9TIMoC93YbKIcLM1ok_KKlw
Online CF Meetup - "Avoiding Server-Side Request Forgery (SSRF) Vulns in CFML", with Brian Reilly
Thursday, November 11, 2021 - 9:00 AM to 10:00 AM PST
Server-Side Request Forgery (SSRF) vulnerabilities allow an attacker to make arbitrary web requests (and in some cases, other protocols too) from the application environment. Exploiting these flaws can lead to leaking sensitive data, accessing internal resources, and under certain circumstances, remote command execution.
Several ColdFusion/CFML tags and functions can process URLs as file path arguments -- including some tags and and functions that you might not expect. If these tags and functions process unvalidated user-controlled input, this can lead to SSRF vulnerabilities in your applications. In addition to providing a list of affected tags and functions, I'll cover some approaches for identifying and remediating vulnerable code. My goal for this talk is to raise awareness about what may be a security blindspot for some ColdFusion/CFML developers.
https://www.meetup.com/coldfusionmeetup/events/281850930/
ICYMI - Online CF Meetup - "Migrating apps to ColdFusion 2021 from earlier versions", with Charlie Arehart
Thursday, November 4, 2021
9:00 AM to 10:00 AM PDT
While CF2021 has been out now for a year (released in Nov 2020), many orgs may only now be considering moving to it, whether from CF2018 or perhaps CF2016, CF11, CF10, or even earlier. How have the versions changed, in ways that some older code may not run on CF2021? And if you're skipping some CF version/s, what might have tripped you up in those, though not really "new" in CF2021 itself? And what can you do to mitigate such challenges?
In this session, CF troubleshooter Charlie Arehart will share from his experience helping folks make such migrations the past year (and for years with previous CF versions), whether in his role as an independent consultant or providing assistance to the CF community. He'll cover things you can consider in advance of the migration as well as things that might help during or after the migration. Most importantly, this talk will focus on the differences between CF2021 and various earlier CF versions. (Note that he has previously given a talk on migrating CF admin settings, and he plans a future talk on some other aspects of migration.)
https://www.meetup.com/coldfusionmeetup/events/281800384/
Recording: https://www.youtube.com/watch?v=QQBHnQExFqc
CFCasts Content Updates
https://www.cfcasts.com
Just Released
Coming this week
A new series of ForgeBox coming very soon
Send your suggestions at https://cfcasts.com/support
Conferences and Training
Deploy by Digital...