CVE-2011-0067
Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, does not properly implement autocompletion for forms, which allows remote attackers to read form history entries via a Java applet that spoofs interaction with the autocomplete controls.
Date published : 2011-05-07
http://downloads.avaya.com/css/P8/documents/100144158
http://www.mozilla.org/security/announce/2011/mfsa2011-14.html