Description
Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache.
Affected products
Exploits & proofs of concept
- exploit-dbOpera 5.0/5.1 - Same Origin Policy Circumventionby Georgi Guninski
Updated 4m ago · 8 sources