Submitting forms on the support site are temporary unavailable for schedule maintenance. If you need immediate assistance please contact technical support. We apologize for the inconvenience.
Is Toad for Oracle affected by vulnerability CVE-2022-42889?
설명
Is Toad for Oracle or Toad Data Point affected by vulnerability CVE-2022-42889?
원인
NA
해결 방안
Toad for Oracle or Toad Data Point do not use Apache Commons Text Packages hence they are not affected with the vulnerability CVE-2022-42889.
추가 정보
A flaw was found in Apache Commons Text packages 1.5 through 1.9. The affected versions allow an attacker to benefit from a variable interpolation process contained in Apache Commons Text, which can cause properties to be dynamically defined. Server applications are vulnerable to remote code execution (RCE) and unintentional contact with untrusted remote servers.