CVE Published: 05/01/2022 |
CVE Updated: 17/09/2024 |
CVE Year: 2021 Source: Google |
Vendor: Google LLC |
Product: Dart SDK Status : PUBLISHED
CVE-2021-22567 Description
Bidirectional Unicode text can be interpreted and compiled differently than how it appears in editors which can be exploited to get nefarious code passed a code review by appearing benign. An attacker could embed a source that is invisible to a code reviewer that modifies the behavior of a program in unexpected ways.
Metrics
CVSS Version: 3.1 |
Base Score: 4.6 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L