Published on Sep 16,
eBay are currently vulnerable to XSRF –
allowing any other web site to alter your profile information and
gain access to your account.
Also very noteworthy, from softpedia:
Update. Moore has found that an identical flaw was
reported to eBay back in 2010 by
Israeli security researcher Nir Goldshlager. “It’s either
been vulnerable for 3 years+ or an update has reintroduced the
exploit,” Moore noted.
Beware shoppers, ebaY is not a safe place! They have repeatedly been shown to heavily censor
and/or conceal any mention of these sorts of events which they can, leaving
victims, (both buyers and sellers) out in the cold.