CVE-2013-5227
Apple Safari before 6.1.1 and 7.x before 7.0.1 allows remote attackers to bypass the Same Origin Policy and discover credentials by triggering autofill of subframe form fields.
Date published : 2013-12-18
http://archives.neohapsis.com/archives/bugtraq/2013-12/0087.html
http://archives.neohapsis.com/archives/bugtraq/2013-12/0086.html