Firefox, IE, Chrome and Common Names
If you visit a TLS enabled website under name "www.something.ext", but it provides certificate for "something.ext" only, I mean common name is "something.ext" and "www.something.ext" is NOT listed in alternate names, then Mozilla Firefox will report invalid certificate. Google Chrome and Internet Explorer show NO warnings. I've noticed this behavior first at https://www.vali.ge (actual content irrelevant), but pretty sure it is not web-site specific.
Usually "www.something.ext" is same site as "something.ext" but it does not have to. I consider this to be an intentional security vulnerability and really not happy about this.