CVE-2012-3558: Opera Browser

Low severity, CVSS 2.6. EPSS: 1.8% chance of exploitation in the next 30 days.

Opera before 11.65 does not ensure that the address field corresponds to the displayed web page during unusually timed changes to this field, which makes it easier for user-assisted remote attackers to conduct spoofing attacks via vectors involving navigation, reloads, and redirects.

Affected products

  • Opera Opera Browser: up to and including 11.64; version 5.0 only; version 5.02 only; version 5.10 only; version 5.11 only; version 5.12 only; …

Published 2012-06-14. Last modified 2026-06-16.