CVE-2024-23077: High severity JFree JFreeChart vulnerability
JFreeChart v1.5.4 was discovered to be vulnerable to ArrayIndexOutOfBounds via the component /chart/plot/CompassPlot.java. NOTE: this is disputed by multiple third parties who believe there was not reasonable evidence to determine the existence of a vulnerability. The submission may have been based on a tool that is not sufficiently robust for vulnerability identification.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23077?
CVE-2024-23077 has a severity rating of high, with a score of 7.5 on the CVSS scale.
How do I fix CVE-2024-23077?
To address CVE-2024-23077, upgrade JFreeChart to the latest version that resolves this vulnerability.
What impact does CVE-2024-23077 have on JFreeChart users?
CVE-2024-23077 may allow an ArrayIndexOutOfBounds exception, potentially disrupting the functionality of applications using JFreeChart.
Is CVE-2024-23077 confirmed as a vulnerability?
CVE-2024-23077 is disputed by several parties, indicating that there may not be sufficient evidence to confirm the vulnerability.
Which versions of JFreeChart are affected by CVE-2024-23077?
CVE-2024-23077 specifically affects JFreeChart version 1.5.4.