Paper describing the various methods and techniques of cross site reference forgery.
0d74b20fe311533c844750df4a40b17be780bbfc0f1cf786aac71f4e1b316276
Atstake Security Advisory A102003-1 - Opera v7.20 and below contains a heap overflow when parsing HREFs with illegally escaped server names, allowing remote code execution via email or malicious web page. Fix available here. Tested against Windows XP and Linux.
47be7130d5351ee1e6a51c87a74d5a02b3e5f28749ce4d47d3f097a00a9f49bd