CVE-2012-3556: Opera Browser
High severity, CVSS 9.3. EPSS: 3.7% chance of exploitation in the next 30 days.
Opera before 11.65 does not properly restrict the opening of a pop-up window in response to the first click of a double-click action, which makes it easier for user-assisted remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary code via a crafted web site.
Affected products
- Opera Opera Browser: up to and including 11.62; version 5.0 only; version 5.02 only; version 5.10 only; version 5.11 only; version 5.12 only; …
Published 2012-06-14. Last modified 2026-06-16.