CVE-2024-23083
Medium severity, CVSS 5.3. EPSS: 0.7% chance of exploitation in the next 30 days.
Time4J Base v5.9.3 was discovered to contain a NullPointerException via the component net.time4j.format.internal.FormatUtils::useDefaultWeekmodel(Locale). NOTE: this is disputed by multiple third parties who believe there was not reasonable evidence to determine the existence of a vulnerability. The submission may have been based on a tool that is not sufficiently robust for vulnerability identification.
Published 2024-04-10. Last modified 2026-07-09.