See how threeten compares to other vendors in security performance
ThreeTen Backport is vulnerable to a denial of service, caused by a NullPointerException flaw in the org.threeten.bp.LocalDate::compareTo(ChronoLocalDate) component. By sending a specially crafted request, a remote attacker could exploit this vulnerability to cause a denial of service condition.
ThreeTen Backport v1.6.8 was discovered to contain a NullPointerException via the component org.threeten.bp.LocalDate::compareTo(ChronoLocalDate).
http://threeten.com https://gist.github.com/LLM4IG/3cc9183dcd887020368a0bafeafec5e3 https://github.com/ThreeTen/threetenbp