Launchpad.net

CVE 2016-4075

Opera Mini 13 and Opera Stable 36 allow remote attackers to spoof the displayed URL via a crafted HTML document, related to the about:blank URL.

See the CVE page on Mitre.org for more details.

References