Commons-text-1.9.jar vulnerability

Wondering if anyone knows how to "patch" this with the v1.10?
ie, is it as simple as just removing v1.9 from /setup/lib and putting in v1.10?
 

Hi Ted,

I have tried replacing the commons-text-1.9.jar with commons-text-1.10.jar version. Fairly tested the working of Bonita, looks like its working fine.

P.S: You may try it in your Dev environment. All the best!

Regards,

Ijaz