CVE-2009-0776
nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to bypass the same-origin policy and read XML data from another domain via a cross-domain redirect.
Date published : 2009-03-04
http://www.securityfocus.com/bid/33990
http://support.avaya.com/elmodocs2/security/ASA-2009-069.htm