Vulnerability index

Browse CVEs

208 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Opera Browser HIGH 9.3
CVE-2008-1762EPSS 8%

Opera before 9.27 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted scaled image pattern…

Fix: after 9.26
Fix from $1,950 2008-04-12
Opera HIGH 9.3
CVE-2008-1764

Unspecified vulnerability in Opera before 9.27 has unknown impact and attack vectors related to "keyboard handling of password inputs."

Fix: after 9.26
Fix from $1,950 2008-04-12
Opera Browser MEDIUM 6.8
CVE-2008-1080

Opera before 9.26 allows user-assisted remote attackers to read arbitrary files by tricking a user into typing the characters of the target filename …

Fix: after 9.25
Fix from $1,600 2008-02-29
Opera Browser MEDIUM 6.8
CVE-2008-1081

Opera before 9.26 allows user-assisted remote attackers to execute arbitrary script via images that contain custom comments, which are treated as scr…

Fix: after 9.25
Fix from $1,600 2008-02-29
Opera Browser HIGH 10.0
CVE-2007-6521EPSS 5%

Unspecified vulnerability in Opera before 9.25 allows remote attackers to execute arbitrary code via crafted TLS certificates.

Fix: after 9.24
Fix from $1,950 2007-12-24
Opera Browser HIGH 7.8
CVE-2007-6523

Algorithmic complexity vulnerability in Opera 9.50 beta and 9.x before 9.25 allows remote attackers to cause a denial of service (CPU consumption) vi…

No fix yet
Fix from $1,950 2007-12-24
Opera Browser HIGH 7.8
CVE-2007-6524

Opera before 9.25 allows remote attackers to obtain potentially sensitive memory contents via a crafted bitmap (BMP) file, as demonstrated using a CA…

Fix: after 9.24
Fix from $1,950 2007-12-24
Opera Browser HIGH 9.3
CVE-2007-5541

Unspecified vulnerability in Opera before 9.24, when using an "external" newsgroup or e-mail client, allows remote attackers to execute arbitrary com…

Fix: after 9.23
Fix from $1,950 2007-10-18
Opera Browser HIGH 7.5
CVE-2007-5540

Unspecified vulnerability in Opera before 9.24 allows remote attackers to overwrite functions on pages from other domains and bypass the same-origin …

Fix: after 9.23
Fix from $1,950 2007-10-18
Opera Browser MEDIUM 5.0
CVE-2007-4944

The canvas.createPattern function in Opera 9.x before 9.22 for Linux, FreeBSD, and Solaris does not clear memory before using it to process a new pat…

Mitigation only
Fix from $1,600 2007-09-18
Opera Browser HIGH 9.3
CVE-2007-4367EPSS 8%

Opera before 9.23 allows remote attackers to execute arbitrary code via crafted Javascript that triggers a "virtual function call on an invalid point…

Fix: 9.23+
Fix from $1,950 2007-08-15
Opera Browser HIGH 9.3
CVE-2007-3929EPSS 6%

Use-after-free vulnerability in the BitTorrent support in Opera before 9.22 allows user-assisted remote attackers to execute arbitrary code via a cra…

Fix: 9.22+
Fix from $1,950 2007-07-21
Opera Browser MEDIUM 5.0
CVE-2007-3819

Opera 9.21 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the begin…

Mitigation only
Fix from $1,600 2007-07-17
Opera Browser MEDIUM 5.8
CVE-2007-3142

Visual truncation vulnerability in Opera 9.21 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostn…

No fix yet
Fix from $1,600 2007-06-11
Opera Browser HIGH 9.3
CVE-2007-2809EPSS 6%

Buffer overflow in the transfer manager in Opera before 9.21 for Windows allows user-assisted remote attackers to execute arbitrary code via a crafte…

Fix: 9.21+
Fix from $1,950 2007-05-22
Opera Browser HIGH 7.8
CVE-2007-2274EPSS 8%

The BitTorrent implementation in Opera 9.2 allows remote attackers to cause a denial of service (CPU consumption and application crash) via a malform…

No fix yet
Fix from $1,950 2007-04-25
Opera Browser HIGH 7.5
CVE-2007-1737

Opera 9.10 does not check URLs embedded in (1) object or (2) iframe HTML tags against the phishing site blacklist, which allows remote attackers to b…

Mitigation only
Fix from $1,950 2007-03-28
Opera Browser MEDIUM 6.8
CVE-2007-1563

The FTP protocol implementation in Opera 9.10 allows remote attackers to allows remote servers to force the client to connect to other servers, perfo…

Mitigation only
Fix from $1,600 2007-03-21
Opera Browser MEDIUM 5.0
CVE-2006-6970

Opera 9.10 Final allows remote attackers to bypass the Fraud Protection mechanism by adding certain characters to the end of a domain name, as demons…

No fix yet
Fix from $1,600 2007-02-07
Opera Browser HIGH 9.3
CVE-2007-0126EPSS 11%

Heap-based buffer overflow in Opera 9.02 allows remote attackers to execute arbitrary code via a JPEG file with an invalid number of index bytes in t…

Patch available
Fix from $1,950 2007-01-09
Opera Browser HIGH 9.3
CVE-2007-0127

The Javascript SVG support in Opera before 9.10 does not properly validate object types in a createSVGTransformFromMatrix request, which allows remot…

Fix: after 9.02
Fix from $1,950 2007-01-09
Opera Browser MEDIUM 5.1
CVE-2006-4819

Heap-based buffer overflow in Opera 9.0 and 9.01 allows remote attackers to execute arbitrary code via a long URL in a tag (long link address).

Patch available
Fix from $1,600 2006-10-17
Opera Browser MEDIUM 5.0
CVE-2006-3945

The CSS functionality in Opera 9 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by setting the background property of…

No fix yet
Fix from $1,600 2006-07-31
Opera Browser MEDIUM 5.0
CVE-2006-3353EPSS 8%

Opera 9 allows remote attackers to cause a denial of service (crash) via a crafted web page that triggers an out-of-bounds memory access, related to …

Fix: 9.01+
Fix from $1,600 2006-07-06
Opera Browser MEDIUM 5.0
CVE-2006-3331

Opera before 9.0 does not reset the SSL security bar after displaying a download dialog from an SSL-enabled website, which allows remote attackers to…

Fix: 9.0+
Fix from $1,600 2006-06-30
Opera Browser HIGH 7.5
CVE-2006-3198EPSS 6%

Integer overflow in Opera 8.54 and earlier allows remote attackers to execute arbitrary code via a JPEG image with large height and width values, whi…

Fix: after 8.5.4
Fix from $1,950 2006-06-23
Opera Browser MEDIUM 5.0
CVE-2006-3199EPSS 15%

Opera 9 allows remote attackers to cause a denial of service (crash) via an A tag with an href attribute with a URL containing a long hostname, which…

No fix yet
Fix from $1,600 2006-06-23
Opera Browser MEDIUM 5.1
CVE-2006-1834EPSS 12%

Integer signedness error in Opera before 8.54 allows remote attackers to execute arbitrary code via long values in a stylesheet attribute, which pass…

Fix: after 8.53
Fix from $1,600 2006-04-19
Opera Browser MEDIUM 5.0
CVE-2005-4718EPSS 10%

Opera 8.02 and earlier allows remote attackers to cause a denial of service (client crash) via (1) a crafted HTML file with a "content: url(0);" styl…

Fix: after 8.02
Fix from $1,600 2005-12-31
Opera Browser MEDIUM 5.0
CVE-2005-4210

Opera before 8.51, when running on Windows with Input Method Editor (IME) installed, allows remote attackers to cause a denial of service (persistent…

Fix: 8.51+
Fix from $1,600 2005-12-13