Opera 9.10 does not check URLs embedded in (1) object or (2) iframe HTML tags against the phishing site blacklist, which allows remote attackers to bypass phishing protection.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Opera_browser | Opera | 9.10 (including) | 9.10 (including) |
| Opera | Ubuntu | dapper | * |
| Opera | Ubuntu | edgy | * |
| Opera | Ubuntu | feisty | * |
| Opera | Ubuntu | upstream | * |