Clickjacking attacks may be carried out against internal opera: URLs – Opera Security Advisories

Severity

High

Description

Internal opera: URLs which may be used to modify the Opera configuration have some intentional restrictions that are designed to mitigate possible clickjacking attacks. Certain manipulations can trick Opera into bypassing those restrictions, which would then allow clickjacking attacks to be carried out.

Opera’s response

Opera Software has released Opera 11.01, where this issue has been fixed.