Vulnerability index

Browse CVEs

32 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Opera Mini MEDIUM 6.5
CVE-2018-16135

The Opera Mini application 47.1.2249.129326 for Android allows remote attackers to spoof the Location Permission dialog via a crafted web site.

Mitigation only
Fix from $1,600 2022-12-26
Mini CRITICAL 9.8
CVE-2019-18624

Opera Mini for Android allows attackers to bypass intended restrictions on .apk file download/installation via an RTLO (aka Right to Left Override) a…

No fix yet
Fix from $2,300 2019-10-29
Opera Browser MEDIUM 6.1
CVE-2016-4075

Opera Mini 13 and Opera Stable 36 allow remote attackers to spoof the displayed URL via a crafted HTML document, related to the about:blank URL.

No fix yet
Fix from $1,600 2017-04-21
Opera Browser MEDIUM 6.1
CVE-2016-6908

Characters from languages are such as Arabic, Hebrew are displayed from RTL (Right To Left) order in Opera 37.0.2192.105088 for Android, due to misha…

Mitigation only
Fix from $1,600 2017-01-26
Opera Mail HIGH 8.8
CVE-2016-5101

Unspecified vulnerability in Opera Mail before 2016-02-16 on Windows allows user-assisted remote attackers to execute arbitrary code via a crafted e-…

Mitigation only
Fix from $1,950 2016-06-29
Opera Browser MEDIUM 5.0
CVE-2010-5072

The JavaScript implementation in Opera 10.5 does not properly restrict the set of values contained in the object returned by the getComputedStyle met…

No fix yet
Fix from $1,600 2011-12-07
Opera Browser MEDIUM 5.0
CVE-2011-2641EPSS 5%

Opera 11.11 allows remote attackers to cause a denial of service (application crash) by setting the FACE attribute of a FONT element within an IFRAME…

No fix yet
Fix from $1,600 2011-07-01
Opera Browser MEDIUM 5.0
CVE-2010-1989

Opera 9.52 executes a mail application in situations where an IMG element has a SRC attribute that is a redirect to a mailto: URL, which allows remot…

No fix yet
Fix from $1,600 2010-05-20
Opera Browser MEDIUM 5.0
CVE-2010-1993

Opera 9.52 does not properly handle an IFRAME element with a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of ser…

No fix yet
Fix from $1,600 2010-05-20
Opera Browser MEDIUM 5.0
CVE-2010-1310

Opera 10.50 allows remote attackers to obtain sensitive information via crafted XSLT constructs, which cause Opera to return cached contents of other…

Mitigation only
Fix from $1,600 2010-04-08
Opera Browser MEDIUM 6.8
CVE-2009-2070

Opera displays a cached certificate for a (1) 4xx or (2) 5xx CONNECT response page returned by a proxy server, which allows man-in-the-middle attacke…

Mitigation only
Fix from $1,600 2009-06-15
Opera MEDIUM 5.8
CVE-2009-2068

Google Chrome detects http content in https web pages only when the top-level frame uses https, which allows man-in-the-middle attackers to execute a…

Mitigation only
Fix from $1,600 2009-06-15
Opera Browser HIGH 9.3
CVE-2009-1599

Opera executes DOM calls in response to a javascript: URI in the target attribute of a submit element within a form contained in an inline PDF file, …

Mitigation only
Fix from $1,950 2009-05-11
Opera HIGH 9.3
CVE-2008-5178EPSS 32%

Heap-based buffer overflow in Opera 9.62 on Windows allows remote attackers to execute arbitrary code via a long file:// URI. NOTE: this might overl…

No fix yet
Fix from $1,950 2008-11-20
Opera MEDIUM 6.8
CVE-2008-3172

Opera allows web sites to set cookies for country-specific top-level domains that have DNS A records, such as co.tv, which could allow remote attacke…

Mitigation only
Fix from $1,600 2008-07-14
Opera Browser HIGH 7.8
CVE-2007-6523

Algorithmic complexity vulnerability in Opera 9.50 beta and 9.x before 9.25 allows remote attackers to cause a denial of service (CPU consumption) vi…

No fix yet
Fix from $1,950 2007-12-24
Opera Browser MEDIUM 5.0
CVE-2007-4944

The canvas.createPattern function in Opera 9.x before 9.22 for Linux, FreeBSD, and Solaris does not clear memory before using it to process a new pat…

Mitigation only
Fix from $1,600 2007-09-18
Opera Browser MEDIUM 5.0
CVE-2007-3819

Opera 9.21 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the begin…

Mitigation only
Fix from $1,600 2007-07-17
Opera Browser MEDIUM 5.8
CVE-2007-3142

Visual truncation vulnerability in Opera 9.21 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostn…

No fix yet
Fix from $1,600 2007-06-11
Opera Browser HIGH 7.8
CVE-2007-2274EPSS 8%

The BitTorrent implementation in Opera 9.2 allows remote attackers to cause a denial of service (CPU consumption and application crash) via a malform…

No fix yet
Fix from $1,950 2007-04-25
Opera Browser HIGH 7.5
CVE-2007-1737

Opera 9.10 does not check URLs embedded in (1) object or (2) iframe HTML tags against the phishing site blacklist, which allows remote attackers to b…

Mitigation only
Fix from $1,950 2007-03-28
Opera Browser MEDIUM 6.8
CVE-2007-1563

The FTP protocol implementation in Opera 9.10 allows remote attackers to allows remote servers to force the client to connect to other servers, perfo…

Mitigation only
Fix from $1,600 2007-03-21
Opera Browser MEDIUM 5.0
CVE-2006-6970

Opera 9.10 Final allows remote attackers to bypass the Fraud Protection mechanism by adding certain characters to the end of a domain name, as demons…

No fix yet
Fix from $1,600 2007-02-07
Opera Browser MEDIUM 5.0
CVE-2006-3945

The CSS functionality in Opera 9 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by setting the background property of…

No fix yet
Fix from $1,600 2006-07-31
Opera Browser MEDIUM 5.0
CVE-2006-3199EPSS 15%

Opera 9 allows remote attackers to cause a denial of service (crash) via an A tag with an href attribute with a URL containing a long hostname, which…

No fix yet
Fix from $1,600 2006-06-23
Opera Browser MEDIUM 5.0
CVE-2005-3946

Opera 8.50 allows remote attackers to cause a denial of service (crash) via a Java applet with a large string argument to the removeMember JNI method…

No fix yet
Fix from $1,600 2005-12-01
Opera Browser MEDIUM 5.0
CVE-2005-3699

Opera Web Browser 8.50 and 8.0 through 8.0.2 allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trus…

No fix yet
Fix from $1,600 2005-11-21
Opera Browser MEDIUM 5.0
CVE-2005-2309

Opera 8.01 allows remote attackers to cause a denial of service (CPU consumption) via a crafted JPEG image, as demonstrated using random.jpg.

No fix yet
Fix from $1,600 2005-07-19
Opera Browser MEDIUM 5.0
CVE-2004-0872

Opera does not prevent cookies that are sent over an insecure channel (HTTP) from also being sent over a secure channel (HTTPS/SSL) in the same domai…

Mitigation only
Fix from $1,600 2004-09-16
Opera Browser HIGH 7.5
CVE-2004-0717

Opera 7.51 for Windows and 7.50 for Linux does not properly prevent a frame in one domain from injecting content into a frame that belongs to another…

Mitigation only
Fix from $1,950 2004-07-27