{"id":"CVE-2021-22567","details":"Bidirectional Unicode text can be interpreted and compiled differently than how it appears in editors which can be exploited to get nefarious code passed a code review by appearing benign. An attacker could embed a source that is invisible to a code reviewer that modifies the behavior of a program in unexpected ways.","modified":"2026-07-09T01:30:11.283127Z","published":"2022-01-05T11:15:08.120Z","references":[{"type":"ADVISORY","url":"https://github.com/dart-lang/sdk/blob/main/CHANGELOG.md"},{"type":"FIX","url":"https://github.com/dart-lang/sdk/commit/52519ea8eb4780c468c4c2ed00e7c8046ccfed41"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/dart-lang/sdk","events":[{"introduced":"0"},{"fixed":"3d2629cd0310df74bdf260d828ed3c75f25db889"},{"fixed":"52519ea8eb4780c468c4c2ed00e7c8046ccfed41"}],"database_specific":{"cpe":"cpe:2.3:a:dart:dart_software_development_kit:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"2.15.0"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["2.14.4","2.15.0-268.8.beta","2.15.0-268.1.beta","2.15.0-178.1.beta","2.14.3","2.15.0-82.2.beta","2.14.2","2.15.0-82.1.beta","2.14.1","2.14.0-377.8.beta","2.14.0","2.13.4","2.14.0-377.7.beta","2.14.0-377.4.beta","2.14.0-377.1.beta","2.14.0-301.2.beta","2.14.0-188.5.beta","2.14.0-188.3.beta","2.13.3","2.14.0-188.1.beta","2.13.0-211.14.beta","2.13.1","2.13.0","2.12.4","2.13.0-211.13.beta","2.13.0-211.6.beta","2.12.3","2.13.0-211.1.beta","2.12.2","2.13.0-116.1.beta","2.12.1","2.12.0-259.16.beta","2.12.0","2.10.5","2.12.0-259.15.beta","2.12.0-259.14.beta","2.12.0-259.12.beta","2.12.0-259.9.beta","2.12.0-259.8.beta","2.12.0-259.1.beta","2.12.0-133.7.beta","2.10.4","2.12.0-133.6.beta","2.12.0-133.2.beta","2.12.0-133.1.beta","2.12.0-29.10.beta","2.12.0-29.7.beta","2.12.0-29.1.beta","2.11.0-213.5.beta","2.10.3","2.11.0-213.4.beta","2.10.2","2.11.0-213.1.beta","2.10.0-110.5.beta","2.10.1","2.10.0","2.9.3","2.10.0-110.3.beta","2.10.0-110.1.beta","2.10.0-7.3.beta","2.9.2","2.9.1","2.10.0-7.2.beta","2.10.0-7.1.beta","2.9.0-21.10.beta","2.9.0","2.8.4","2.9.0-21.4.beta","2.9.0-21.2.beta","2.9.0-21.1.beta","2.9.0-14.1.beta","2.9.0-8.2.beta","2.8.3","2.8.2","2.9.0-8.1.beta","2.8.0-20.11.beta","2.8.1","2.7.2","2.8.0-dev.20.7","2.7.1","2.7.0","2.6.1","2.6.0","2.5.2","2.5.1","2.5.0","2.4.1","2.4.0","2.3.2","2.3.1","2.3.0","2.2.0","2.1.1","2.1.0","merge_analyzer_branch","2.0.0","analyzer-0.33.0","1.24.3","analyzer-0.32.4","analyzer-0.32.0","analyzer-0.31.2-alpha.2","analyzer-0.31.2-alpha.1","analyzer-0.31.2-alpha.0","analyzer-0.31.1","analyzer-0.31.0+1","analyzer-0.31.0","1.24.2","1.24.1","1.24.0","1.23.0","1.22.1","1.22.0","1.21.1","1.21.0","1.20.1","1.20.0","1.19.1","1.19.0","1.18.1","1.18.0","1.17.1","1.17.0","1.16.1","1.16.0","1.15.0","1.14.2","1.14.1","1.14.0","1.13.2","1.13.1","1.13.0","1.12.2","1.12.1","1.12.0","1.11.3","1.11.2","1.11.1","1.11.0","1.11.0-dev.5.7","1.11.0-dev.5.6","1.11.0-dev.5.5","1.11.0-dev.5.4","1.11.0-dev.5.3","1.11.0-dev.5.2","1.11.0-dev.5.1","1.11.0-dev.5.0","1.11.0-dev.4.0","1.11.0-dev.3.0","1.11.0-dev.2.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-22567.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N"}]}