<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ****QVC Website - Serious Security Vulnerability**** in Community Chat</title>
    <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4724355#M1269617</link>
    <description>&lt;P&gt;&lt;FONT size="5"&gt;Just fix it QVC&lt;/FONT&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 18 Jun 2018 21:50:43 GMT</pubDate>
    <dc:creator>Catiele</dc:creator>
    <dc:date>2018-06-18T21:50:43Z</dc:date>
    <item>
      <title>****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723395#M1269433</link>
      <description>&lt;P&gt;The password issue has been going on a long time on your website. It was fixed briefly and now its once again a problem. It is a major security vulnerability for all QVC customers and nothing is being done about it. It’s not that hard to fix and it makes customers worry that QVC is not taking online security seriously. Bad actors can easily access passwords when they are shown in the clear. Why in heaven’s name would QVC have an option to show someones password! The only reason why someone would have that option on a website is that they want customers passwords to be compromised. It makes no sense at all. It makes me mad as hell when I’m logging onto the QVC website and my password is showing in the clear. I’ve been patient about this, but QVC better friggin fix this ASAP or it’s going to be a FOX News story. No other online shopping sites Amazon, Macys...... have ever done anything like this. Also when customers are calling in to complain about the problem they are told it’s a problem with their computer. I called in again today and was told the same thing. It’s really bad when QVC’s Customer Service personnel are not even aware of a known security vulnerability on the QVC website. I don’t think QVC departments even know how to communicate with one another anymore. I won’t be doing business with a company that does not exercise cyber security on it’s website. This is a major security violation on your website. Fix it QVC!&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 14:56:39 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723395#M1269433</guid>
      <dc:creator>Ketra</dc:creator>
      <dc:date>2018-06-18T14:56:39Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723407#M1269437</link>
      <description>&lt;P&gt;&lt;FONT size="3"&gt;&lt;EM&gt;How are you seeing this ,where more details please,i do not see this.&lt;/EM&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:00:15 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723407#M1269437</guid>
      <dc:creator>goldensrbest</dc:creator>
      <dc:date>2018-06-18T15:00:15Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723412#M1269439</link>
      <description>&lt;P&gt;I see it on my MacBook Pro. &amp;nbsp;You seem to have to decide on "show" or "hide". &amp;nbsp;I'd rather it be hidden all the time as before. &amp;nbsp;Why would I want to "show" it???&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:02:30 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723412#M1269439</guid>
      <dc:creator>Krimpette</dc:creator>
      <dc:date>2018-06-18T15:02:30Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723424#M1269440</link>
      <description>&lt;P&gt;&lt;STRONG&gt;I know. &amp;nbsp;I thought it was fixed, what is the problem ?????&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:07:11 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723424#M1269440</guid>
      <dc:creator>QVCkitty1</dc:creator>
      <dc:date>2018-06-18T15:07:11Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723427#M1269441</link>
      <description>&lt;P&gt;When logging on to the website it automatically shows the password I’m typing in.&lt;/P&gt;&lt;P&gt;Next to the password it says “show” or “hide”. There should never be an option to show a password. It comes up automatcally in the “show” option so when typing your password it shows up in the clear. Each time when logging in you must select the “hide” option or it will show your password. This is a known problem to QVC and the fixed it once, however it has resumed. It’s been reported numerous times on the “Customer Care Forum. &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:08:43 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723427#M1269441</guid>
      <dc:creator>Ketra</dc:creator>
      <dc:date>2018-06-18T15:08:43Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723434#M1269443</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.qvc.com/t5/user/viewprofilepage/user-id/10179"&gt;@Krimpette&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;I see it on my MacBook Pro. &amp;nbsp;You seem to have to decide on "show" or "hide". &amp;nbsp;I'd rather it be hidden all the time as before. &amp;nbsp;Why would I want to "show" it???&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;I've tried it and next time you go to sign it's back to the show option.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For me, it only happens if I'm incognito on my browser.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:10:06 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723434#M1269443</guid>
      <dc:creator>CelticCrafter</dc:creator>
      <dc:date>2018-06-18T15:10:06Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723439#M1269445</link>
      <description>&lt;P&gt;&lt;FONT size="3"&gt;&lt;EM&gt;If it is the show or hide ,i see that but isn't that just because we choose that?&lt;/EM&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:10:47 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723439#M1269445</guid>
      <dc:creator>goldensrbest</dc:creator>
      <dc:date>2018-06-18T15:10:47Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723444#M1269446</link>
      <description>&lt;P&gt;The problem is QVC is not taking our online security seriously. &amp;nbsp;They are not protecting our information properly and they better start taking cyber security seriously or I and thousands others won’t be shopping here anymore.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:12:31 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723444#M1269446</guid>
      <dc:creator>Ketra</dc:creator>
      <dc:date>2018-06-18T15:12:31Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723450#M1269451</link>
      <description>&lt;P&gt;I would think for many of QVC members who are visually impaired&amp;nbsp;&lt;/P&gt;&lt;P&gt;or have dexterity issues, the visual password function would be&amp;nbsp;&lt;/P&gt;&lt;P&gt;welcomed. &amp;nbsp;IMO.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:14:59 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723450#M1269451</guid>
      <dc:creator>sidsmom</dc:creator>
      <dc:date>2018-06-18T15:14:59Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723456#M1269452</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.qvc.com/t5/user/viewprofilepage/user-id/24576"&gt;@goldensrbest&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;&lt;FONT size="3"&gt;&lt;EM&gt;If it is the show or hide ,i see that but isn't that just because we choose that?&lt;/EM&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;a href="https://community.qvc.com/t5/user/viewprofilepage/user-id/24576"&gt;@goldensrbest&lt;/a&gt;&amp;nbsp; No, it comes up each time defaulting to showing your password. &amp;nbsp;There should never even be an option asking if you want to show your password. Only cyber thieves would plant such an option on a website. You would never want your passwords spelled out in the clear. &amp;nbsp;Easy for cyber thieves to snapshot your password.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:17:33 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723456#M1269452</guid>
      <dc:creator>Ketra</dc:creator>
      <dc:date>2018-06-18T15:17:33Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723464#M1269454</link>
      <description>&lt;P&gt;Yep, my password shows up right under where I am supposed to type it in.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:22:11 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723464#M1269454</guid>
      <dc:creator>151949</dc:creator>
      <dc:date>2018-06-18T15:22:11Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723477#M1269457</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.qvc.com/t5/user/viewprofilepage/user-id/52080"&gt;@sidsmom&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;I would think for many of QVC members who are visually impaired&amp;nbsp;&lt;/P&gt;&lt;P&gt;or have dexterity issues, the visual password function would be&amp;nbsp;&lt;/P&gt;&lt;P&gt;welcomed. &amp;nbsp;IMO.&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;a href="https://community.qvc.com/t5/user/viewprofilepage/user-id/52080"&gt;@sidsmom&lt;/a&gt;&amp;nbsp; The passwords are defaulting to showing each time you come to the website. That is the biggest security vulnerabilty there is. Bad actors who obtain those will have all of your data. There is something QVC software folks can include in “customer preferences” that they could select on or off for those who have dexterity issues. &amp;nbsp;They will still be vulnerable to hacking of all of their data if passwords are shown in the clear, but that is a risk they themselves must choose. QVC acknowledges this as a major security vulnerabilty as they fixed this once before.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:29:49 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723477#M1269457</guid>
      <dc:creator>Ketra</dc:creator>
      <dc:date>2018-06-18T15:29:49Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723484#M1269460</link>
      <description>&lt;P&gt;I thought it was fixed too.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The option to show or hide isn't really a problem for me, it is the fact that every time you go to log in, it comes up showing the entire password. The show function only came up if you chose it, then it only showed what letters you were typing in, one at a time, the blanked out, so you could see each key stroke you made, but never left the entire work/number sequence up. It should always be hidden, and was until recently.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I too, would like to know what gives, that Q can't seem to fix this.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:33:42 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723484#M1269460</guid>
      <dc:creator>Mominohio</dc:creator>
      <dc:date>2018-06-18T15:33:42Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723494#M1269463</link>
      <description>&lt;P&gt;when i use the firefox browser to access qvc via my laptop it does not show unless i click on SHOW password.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:41:53 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723494#M1269463</guid>
      <dc:creator>sunshine45</dc:creator>
      <dc:date>2018-06-18T15:41:53Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723501#M1269466</link>
      <description>&lt;P&gt;&lt;FONT size="3"&gt;I don’t ‘get’ this. &amp;nbsp;As I was signing in, I decided to choose show my password. &amp;nbsp;As I typed a letter it would show for a second before turning to a dot. &amp;nbsp;When I chose the hide option, my password showed😏&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3"&gt;Ipad using Safari.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3"&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:45:20 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723501#M1269466</guid>
      <dc:creator>tansy</dc:creator>
      <dc:date>2018-06-18T15:45:20Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723503#M1269468</link>
      <description>&lt;P&gt;I am not techy so my question is besides being visable to the person signing in on their PC who else has sight of it?&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:45:04 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723503#M1269468</guid>
      <dc:creator>Allegheny</dc:creator>
      <dc:date>2018-06-18T15:45:04Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723510#M1269470</link>
      <description>&lt;P&gt;&lt;FONT size="4"&gt;Sometimes the “Show” or “Hide” functions are reversed. If it says “Hide” the entire password is visible. &amp;nbsp;If switched to “Show” you can’t see it. &amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:48:13 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723510#M1269470</guid>
      <dc:creator>Montana</dc:creator>
      <dc:date>2018-06-18T15:48:13Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723511#M1269471</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3" color="#333399"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href="https://community.qvc.com/t5/user/viewprofilepage/user-id/256180"&gt;@Ketra&lt;/a&gt;, Websites normally use "masking" to hide a password as it's being entered, so we see asterisks or dots instead of the characters.&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3" color="#333399"&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3" color="#333399"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; However, sometimes web hosting software &lt;EM&gt;&lt;U&gt;does&lt;/U&gt;&lt;/EM&gt; provide the option to "show."&amp;nbsp; &amp;nbsp;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3" color="#333399"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; On occasion, as &lt;a href="https://community.qvc.com/t5/user/viewprofilepage/user-id/52080"&gt;@sidsmom&lt;/a&gt;&amp;nbsp;said, someone might want to see the password -- for various reasons, one being that if we get the alert that the password was wrong and we know we only get a few attempts before being locked out, we might need to slowly type it and see it as we type, to be sure we're not entering it incorrectly or perhaps our keyboard is fouling up.&amp;nbsp; &amp;nbsp;We can't see that when the password is masked.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3" color="#333399"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; However -- and this is important -- &lt;U&gt;&lt;EM&gt;the default should ALWAYS be to mask the password&lt;/EM&gt;&lt;/U&gt;.&amp;nbsp; &amp;nbsp;If an option is offered, the user should have to actively select it before the password is displayed.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3" color="#333399"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Lithium Hosting provides the web services for QVC.&amp;nbsp; &amp;nbsp;They provide the sites for many other companies -- an good example to use for comparison is eBay, because eBay's login screen (if you go there and login, you'll see a "show" option) and also their community forums are similar to QVC's.&amp;nbsp; &amp;nbsp;However, QVC clearly is using the most basic (can we say "cheap"?) version of the software and also the cheapest, least responsive technical support.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT size="3" color="#333399"&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; The biggest security risk in showing the password is shoulder-surfing, eyeballs seeing it or a video of the process.&amp;nbsp; &amp;nbsp;In some cases, a hacker could use visuals to try and capture logins, but usually they have a more sophisticated method of doing this.&amp;nbsp; &amp;nbsp;Even so, this default to displaying our passwords is just another indication of sloppy, careless programming.&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 17:18:55 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723511#M1269471</guid>
      <dc:creator>dooBdoo</dc:creator>
      <dc:date>2018-06-18T17:18:55Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723518#M1269473</link>
      <description>&lt;P&gt;It does not matter if you choose show or hide because it always ends up showing and hiding. &amp;nbsp;Makes no sense.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:52:09 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723518#M1269473</guid>
      <dc:creator>hopi</dc:creator>
      <dc:date>2018-06-18T15:52:09Z</dc:date>
    </item>
    <item>
      <title>Re: ****QVC Website - Serious Security Vulnerability****</title>
      <link>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723519#M1269474</link>
      <description>&lt;P&gt;I tried flipping that show/hide&amp;nbsp; to hide my password, then turned computer off and when I came back to sign on - it was there again.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 15:52:09 GMT</pubDate>
      <guid>https://community.qvc.com/t5/Community-Chat/QVC-Website-Serious-Security-Vulnerability/m-p/4723519#M1269474</guid>
      <dc:creator>151949</dc:creator>
      <dc:date>2018-06-18T15:52:09Z</dc:date>
    </item>
  </channel>
</rss>

