A critical vulnerability has been detected in the Apache Commons Text library, which could allow remote code execution by an attacker. Named CVE-2022-42889, its severity rating is 9.8, similar to another vulnerability found in July. However, the risk is considered lower than the previous Log4j vulnerability, as the affected functions are less likely to receive user data.

Iran-linked hackers disrupt operations at US critical infrastructure sites
Hackers working on behalf of the Iranian government are disrupting operations at multiple US critical infrastructure sites, likely in response to the country’s ongoing war


