JFreeChart v1.5.4 was discovered to contain a NullPointerException via the component /labels/BubbleXYItemLabelGenerator.java. NOTE: this is disputed by multiple third parties who believe there was not reasonable evidence to determine the existence of a vulnerability. The submission may have been based on a tool that is not sufficiently robust for vulnerability identification.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 27 May 2025 13:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:jfree:jfreechart:1.5.4:*:*:*:*:*:*:*

Fri, 25 Oct 2024 22:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-395

Fri, 25 Oct 2024 21:15:00 +0000

Type Values Removed Values Added
First Time appeared Jfree
Jfree jfreechart
Weaknesses CWE-476
CPEs cpe:2.3:o:jfree:jfreechart:*:*:*:*:*:*:*:*
Vendors & Products Jfree
Jfree jfreechart
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 22 Aug 2024 20:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-395

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-10-25T20:17:57.300Z

Reserved: 2024-01-11T00:00:00

Link: CVE-2024-23076

cve-icon Vulnrichment

Updated: 2024-08-01T22:51:11.307Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-10T12:15:09.190

Modified: 2025-05-27T13:29:49.627

Link: CVE-2024-23076

cve-icon Redhat

Severity : Moderate

Publid Date: 2024-04-10T00:00:00Z

Links: CVE-2024-23076 - Bugzilla

cve-icon OpenCVE Enrichment

No data.