A critical vulnerability has been detected in the Apache Commons Text library, which could allow remote code execution by an attacker. Named CVE-2022-42889, its severity rating is 9.8, similar to another vulnerability found in July. However, the risk is considered lower than the previous Log4j vulnerability, as the affected functions are less likely to receive user data.

Baltimore and New York archdiocese abuse survivors possibly exposed in cyber incident – CBS News
Survivors of abuse within the Baltimore and New York archdioceses may have had their personal information compromised in a recent cyber incident. The breach raises