CVE-2013-4705 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2013-4705): Cross-site scripting (XSS) vulnerability in Opera before 15.00 allows remote attackers to inject arbitrary web script or HTML by leveraging UTF-8 encoding.
It isn't obvious whether "before 15.00" includes the 12.00 branch which we support for Linux/FreeBSD, even though the advisory seems to suggest exactly that.
Looks by the CVE Link that the 12.00 branch is affected. Last version mentioned in the CVE is 12.14.
(In reply to Yury German from comment #2) The list mentions version 1.0. I think that's a generous interpretation of "before 15.00" and nothing to be taken seriously.
12.16 is not mentioned in the CVE at all, which is the current 12.x version in the tree. GLSA Vote: No