PT-2024-14384 · Unknown · Jfreechart

CVE-2023-52070

·

Published

2024-04-10

·

Updated

2026-07-04

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions JFreeChart version 1.5.4
Description The issue is related to an ArrayIndexOutOfBounds condition via the setSeriesNeedle(int index, int type) method. However, it is noted that the existence of this issue is disputed by multiple third parties, suggesting that the evidence may not be sufficient to confirm the vulnerability.
Recommendations For JFreeChart version 1.5.4, as a temporary workaround, consider restricting the use of the setSeriesNeedle(int index, int type) method until further clarification on the issue is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-52070

Affected Products

Jfreechart