The dreaded attack through the log4j logging library was a wake-up call for all companies using obsolete libraries. Many organizations found out the hard way they cannot update the library and deploy the new version in a matter of minutes as professional developers should do. They needed weeks to perform such a simple activity.
They also found out that they had no process for such regular situations when a critical flaw is detected in some software they are using. Seldom did they have the expertise how to upgrade or improve open source artifacts they are using on a daily basis. They preferred to use free software and not to invest any thoughts or efforts to support the community.