VYPR

Orca Browser

by Orcabrowser

CVEs (1)

  • CVE-2009-3017Aug 31, 2009
    risk 0.00cvss epss 0.01

    Orca Browser 1.2 build 5 does not properly block data: URIs in Refresh and Location headers in HTTP responses, which allows remote attackers to conduct cross-site scripting (XSS) attacks via vectors related to (1) injecting a Refresh header that contains JavaScript sequences in…