Patch Apache Commons Text CVE-2022-42889

If you are using an Apache Solr deployment for Magento, then you need to update the jar file for Apache Commons Text if the version found is less than apache-common-text 1.10.0.

/opt/solr-9.0.0/server/solr-webapp/webapp/WEB-INF/lib/commons-text-1.*.jar

More information:

https://nvd.nist.gov/vuln/detail/CVE-2022-42889

GitHub:

https://github.com/apache/commons-text

Apache Downloads:

https://commons.apache.org/proper/commons-text/download_text.cgi

If you need assistance, contact aMiSTACX.

Note: New deployments after March 1st, 2024 should contain the update.