CVE Database
/

CVE-2019-19788

Back to search

CVE-2019-19788

Published: Dec 18, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

Opera for Android before 54.0.2669.49432 is vulnerable to a sandboxed cross-origin iframe bypass attack. By using a service working inside a sandboxed iframe it is possible to bypass the normal sandboxing attributes. This allows an attacker to make forced redirections without any user interaction from a third-party context.

VendorProductVersions

Opera Software AS

Opera for Android

affected
Below 54.0.2669.49432

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now