Bidirectional Unicode text can be interpreted and compiled differently than how it appears in editors which can be exploited to get nefarious code passed a code review by appearing benign. An attacker could embed a source that is invisible to a code reviewer that modifies the behavior of a program in unexpected ways.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Google
Published: 2022-01-05T10:55:11.851542Z
Updated: 2024-09-17T00:10:28.748Z
Reserved: 2021-01-05T00:00:00
Link: CVE-2021-22567
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-01-05T11:15:08.120
Modified: 2024-11-21T05:50:20.357
Link: CVE-2021-22567
Redhat
No data.