Advertisement
Top
image credit: Adobe Stock

Critical Apache Commons Text Flaw Compared to Log4Shell, But Not as Widespread

October 18, 2022

Apache Commons Text is an open source Java library designed for working with strings. Alvaro Munoz, a researcher at GitHub’s Security Lab, discovered in March that the library is affected by an arbitrary code execution vulnerability related to untrusted data processing and variable interpolation.

The flaw, tracked as CVE-2022-42889, was patched by Apache Commons developers last week with the release of version 1.10.0.

Read More on Security Week