Description
Bad validation logic in the Dart SDK versions prior to 2.12.3 allow an attacker to use an XSS attack via DOM clobbering. The validation logic in dart:html for creating DOM nodes from text did not sanitize properly when it came across template tags.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-9681 | Bad validation logic in the Dart SDK versions prior to 2.12.3 allow an attacker to use an XSS attack via DOM clobbering. The validation logic in dart:html for creating DOM nodes from text did not sanitize properly when it came across template tags. |
References
History
No history.
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2024-08-03T18:44:14.025Z
Reserved: 2021-01-05T00:00:00.000Z
Link: CVE-2021-22540
No data.
Status : Modified
Published: 2021-04-22T15:15:07.930
Modified: 2024-11-21T05:50:18.160
Link: CVE-2021-22540
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD