Upgrade to Apache Commons Text 1.10 to Avoid New Exploit

A new vulnerability in the Apache Commons Text, AKA Text4Shell, allows an attacker to execute arbitrary code on the host machine. Originally reported by Alvaro Munoz, principal security researcher at GitHub, CVE-2022-42889, is similar to Spring4Shell and Log4Shell, allowing remote code execution (RCE).

Read full article on InfoQ

 


Date:

Categorie(s):