A RetroSearch Logo

Home - News ( United States | United Kingdom | Italy | Germany ) - Football scores

Search Query:

Showing content from https://security.opera.com/en/cross-site-scripting-in-ofa-opera-security-advisories/ below:

Cross-site Scripting in OfA – Opera Security Advisories

Cross-site Scripting in OfA – Opera Security Advisories | December 21, 2020

CVE ID: CVE-2020-6159
PRODUCT: Opera for Android
VERSION: Below 61.0.3076.56532
PROBLEM TYPE: Cross-site Scripting (CWE-79)
DESCRIPTION: URLs using “javascript:” have the protocol removed when pasted into the address bar to protect users from cross-site scripting (XSS) attacks, but in certain circumstances this removal was not performed. This could allow users to be socially engineered to run an XSS attack against themselves. This vulnerability affects Opera for Android versions below 61.0.3076.56532.
ASSIGNING CNA: Opera


RetroSearch is an open source project built by @garambo | Open a GitHub Issue

Search and Browse the WWW like it's 1997 | Search results from DuckDuckGo

HTML: 3.2 | Encoding: UTF-8 | Version: 0.7.3