'; } else{ echo ''; } echo '
|
|||
Release Date:2025/9/15
Rule Name:CVE-2022-42889: Apache Commons Text Remote Code Execution Vulnerability
Severity:critical
CVE ID:CVE-2022-42889
Descripiton:
|
Apache Commons Text is a library of the Apache Foundation that focuses on string algorithms. A security vulnerability exists in Apache Commons Text versions 1.5 to 1.9 that the default set of Lookup instances includes an interpolator that could lead to arbitrary code execution or contact a remote server, potentially vulnerable to remote code execution attacks. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
Solution:
|
Update vendor patches.