@Breffni-Potter said:
....Eh?
"EBay has patched a severe XSS security vulnerability which exposed potentially millions of users to phishing campaigns and subsequent data theft."
Do not understand, the article says they have patched it.
Sure it's fixed now, after -
Despite being informed of the bug privately, the online auction trading site allegedly left a critical XSS flaw open to abuse on the ebay.com domain, and only rallied to fix the issue after the media caught wind of the flaw.
They weren't going to fix it until public announcement embarrassed them to do so.