Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-42889

95
FAUCET Score

CVE-2022-42889 is a critical Remote Code Execution (RCE) vulnerability in Apache Commons Text versions 1.5 through 1.9, affecting products from vendors like Apache, Juniper, and NetApp. This flaw arises from insecure default interpolators that can execute arbitrary code or contact remote servers when processing untrusted configuration values. With a CVSS score of 9.8 (CRITICAL) and a FAUCET Risk Score of 100/100, it allows unauthenticated attackers to achieve full system compromise with low attack complexity. While not listed on the KEV catalog, exploit modules are publicly available in Metasploit and ExploitDB, and it has garnered significant community discussion and media coverage, indicating a high potential for exploitation.

Impacted Technologies

VendorProductVersion(s)CPE
>= 1.5, < 1.10.0CPE matchmatch criteria
cpe:2.3:a:apache:commons_text:*:*:*:*:*:*:*:*
Range not provided by sourceCPE matchmatch criteria
cpe:2.3:a:netapp:bluexp:-:*:*:*:*:*:*:*
< 7.5.0CPE matchmatch criteria
cpe:2.3:a:juniper:security_threat_response_manager:*:*:*:*:*:*:*:*
7.5.0CPE matchmatch criteria
cpe:2.3:a:juniper:security_threat_response_manager:7.5.0:-:*:*:*:*:*:*
7.5.0CPE matchmatch criteria
cpe:2.3:a:juniper:security_threat_response_manager:7.5.0:up1:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

9.8CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
3.9
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
99.93%
Probability of exploitation in next 30 days
EPSS Percentile
100.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
Metasploit: Apache Commons Text RCE · Oct 13, 2022
Nuclei: CVE-2022-42889 · Mar 17, 2024
ExploitDB: EDB-52261 · Apr 18, 2025
This CVE's current EPSS score of 0.9993 is in the 100th percentile among its peer group of 36,829 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (56)

mavenpatch availablevia ghsa
Product: org.apache.commons:commons-textFixed in: 1.10.0
redhatpatch availablevia redhat_api
Product: OCP-Tools-4.12-RHEL-8Fixed in: jenkins-2-plugins-0:4.12.1683009955-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OCP-Tools-4.12-RHEL-8Fixed in: jenkins-2-plugins-0:4.12.1698294000-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OCP-Tools-4.12-RHEL-8Fixed in: jenkins-2-plugins-0:4.12.1706515741-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OCP-Tools-4.13-RHEL-8Fixed in: jenkins-2-plugins-0:4.13.1684911916-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OCP-Tools-4.13-RHEL-8Fixed in: jenkins-2-plugins-0:4.13.1698292274-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OCP-Tools-4.13-RHEL-8Fixed in: jenkins-2-plugins-0:4.13.1706516346-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OCP-Tools-4.14-RHEL-8Fixed in: jenkins-2-plugins-0:4.14.1699356715-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OCP-Tools-4.14-RHEL-8Fixed in: jenkins-2-plugins-0:4.14.1706516441-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OpenShift Developer Tools and Services for OCP 4.11Fixed in: jenkins-2-plugins-0:4.11.1683009941-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OpenShift Developer Tools and Services for OCP 4.11Fixed in: jenkins-2-plugins-0:4.11.1698299029-1.el8
View patch
redhatpatch availablevia redhat_api
Product: OpenShift Developer Tools and Services for OCP 4.11Fixed in: jenkins-2-plugins-0:4.11.1706516946-1.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat AMQ Broker 7Fixed in: commons-text
View patch
redhatpatch availablevia redhat_api
Product: Red Hat AMQ Streams 2.7.0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat build of Quarkus 2.7.7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Fuse 7.11.1Fixed in: commons-text
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-apache-cxf-0:3.1.16-4.redhat_00003.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-jackson-databind-0:2.8.11.6-2.SP1_redhat_00002.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-jettison-0:1.3.8-2.redhat_00002.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-netty-0:4.1.63-1.Final_redhat_00002.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-resteasy-0:3.0.27-1.Final_redhat_00001.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-snakeyaml-0:1.33.0-1.SP1_redhat_00001.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-velocity-0:1.7.0-3.redhat_00006.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7Fixed in: eap7-wildfly-0:7.1.9-2.GA_redhat_00002.1.ep7.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-hal-console-0:3.2.17-1.Final_redhat_00001.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-jackson-annotations-0:2.10.4-2.redhat_00004.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-jackson-core-0:2.10.4-2.redhat_00004.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-jackson-databind-0:2.10.4-4.redhat_00004.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-jackson-jaxrs-providers-0:2.10.4-2.redhat_00004.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-jackson-modules-base-0:2.10.4-4.redhat_00004.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-jackson-modules-java8-0:2.10.4-2.redhat_00004.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-jettison-0:1.5.2-2.redhat_00002.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-netty-0:4.1.63-4.Final_redhat_00002.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-resteasy-0:3.11.6-1.Final_redhat_00001.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-snakeyaml-0:1.33.0-1.SP1_redhat_00001.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7Fixed in: eap7-wildfly-0:7.3.12-3.GA_redhat_00002.1.el7eap
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.10Fixed in: jenkins-2-plugins-0:4.10.1680703106-1.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenShift Container Platform 4.9Fixed in: jenkins-2-plugins-0:4.9.1680069756-1.el8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Satellite 6.12 for RHEL 8Fixed in: candlepin-0:4.1.18-1.el8sat
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Satellite 6.13 for RHEL 8Fixed in: candlepin-0:4.2.13-1.el8sat
View patch
redhatpatch availablevia redhat_api
Product: RHINT Camel-Q 2.13.2Fixed in: commons-text
View patch
redhatpatch availablevia redhat_api
Product: RHINT Camel-Springboot 3.18.3Fixed in: commons-text
View patch
redhatpatch availablevia redhat_api
Product: RHPAM 7.13.1 asyncFixed in: commons-text
View patch
redhatpatch availablevia redhat_api
Product: Red Hat build of Quarkus 2.13.5Fixed in: commons-text
View patch
barracudavendor investigatingvia llm_extracted
boschvendor investigatingvia llm_extracted
clamavvendor investigatingvia llm_extracted
consulvendor investigatingvia llm_extracted
elasticvendor investigatingvia llm_extracted
freshrssvendor investigatingvia llm_extracted
qdrantvendor investigatingvia llm_extracted
symantecvendor investigatingvia llm_extracted
verbbvendor investigatingvia llm_extracted
redhatno patchvia redhat_api
Product: Red Hat JBoss Enterprise Application Platform Expansion PackFixed in: commons-text
redhatno patchvia redhat_api
Product: Red Hat Integration Camel K 1Fixed in: commons-text
redhatno patchvia redhat_api
Product: Red Hat JBoss Enterprise Application Platform 7Fixed in: commons-text

Vendor Advisories (11)

elasticllm-elastic-e26263be9373ebb6

Splunk Response to the Apache Software Foundation Publishing a Vulnerability on Apache Commons Text (CVE-2022-42889) (Text4Shell)

Feb 14, 2023
barracudallm-barracuda-e101b024f29944a2

Remote Code Execution Vulnerability in Apache Common Text

Oct 18, 2022
symantecllm-symantec-1f72fbdbe90325b0

Remote Code Execution Vulnerability in Apache Common Text

Oct 18, 2022
verbbllm-verbb-c7b8d61a9ddcc1fe

Remote Code Execution Vulnerability in Apache Common Text

Oct 18, 2022
consulllm-consul-ee24490d3abd79f0

Remote Code Execution Vulnerability in Apache Common Text

Oct 18, 2022
qdrantllm-qdrant-c65870672cfa0d96

Remote Code Execution Vulnerability in Apache Common Text

Oct 18, 2022
boschllm-bosch-fcd92e31fdaa0a87

Remote Code Execution Vulnerability in Apache Common Text

Oct 18, 2022
freshrssllm-freshrss-124a649950aa3f93

Remote Code Execution Vulnerability in Apache Common Text

Oct 18, 2022
clamavllm-clamav-7d3be342869a77d9

Remote Code Execution Vulnerability in Apache Common Text

Oct 18, 2022
mavenGHSA-599f-7c49-w659critical

Arbitrary code execution in Apache Commons Text

Oct 13, 2022
redhatCVE-2022-42889Critical

apache-commons-text: variable interpolation RCE

Oct 13, 2022

References

packetstormsecurity.com / files/171003/OX-App-Suite-Cross-Site-Scripting-Server-Side-Request-Forgery.html
Third Party AdvisoryVDB Entry
packetstormsecurity.com / files/176650/Apache-Commons-Text-1.9-Remote-Code-Execution.html
seclists.org / fulldisclosure/2023/Feb/3
Mailing ListThird Party Advisory
lists.apache.org / thread/n2bd4vdsgkqh2tm14l1wyc3jyol7s1om
Mailing ListVendor Advisory
psirt.global.sonicwall.com / vuln-detail/SNWLID-2022-0022
Third Party Advisory
security.gentoo.org / glsa/202301-05
Third Party Advisory
security.netapp.com / advisory/ntap-20221020-0004
Third Party Advisory
openwall.com / lists/oss-security/2022/10/13/4
Mailing ListThird Party Advisory
openwall.com / lists/oss-security/2022/10/18/1
Mailing ListThird Party Advisory