VendorsOperaopera_browserall versions
Vulnerabilities

Opera Browser

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

285CVEs
CVE-2005-2273
Opera 7.x and 8 before 8.01 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
Published 2005-07-13 · Modified
2.6EPSS 0.019
CVE-2012-3558
Opera before 11.65 does not ensure that the address field corresponds to the displayed web page during unusually timed changes to this field, which makes it easier for user-assisted remote attackers to conduct spoofing attacks via vectors involving navigation, reloads, and redirects.
Published 2012-06-14 · Modified
2.6EPSS 0.018
CVE-2010-4583
Opera before 11.00, when Opera Turbo is enabled, does not display a page's security indication, which makes it easier for remote attackers to spoof trusted content via a crafted web site.
Published 2010-12-22 · Modified
2.6EPSS 0.014
CVE-2010-4584
Opera before 11.00, when Opera Turbo is used, does not properly present information about problematic X.509 certificates on https web sites, which might make it easier for remote attackers to spoof trusted content via a crafted web site.
Published 2010-12-22 · Modified
2.6EPSS 0.009
CVE-2011-0685
The Delete Private Data feature in Opera before 11.01 does not properly implement the "Clear all email account passwords" option, which might allow physically proximate attackers to access an e-mail account via an unattended workstation.
Published 2011-01-31 · Modified
2.1EPSS 0.004
← Prev8 / 8