[plasmashell] [Bug 453828] New: Undo operation possible in lock-screen password field (Ctrl-Z)
Derek Christ
bugzilla_noreply at kde.org
Sun May 15 15:06:12 BST 2022
https://bugs.kde.org/show_bug.cgi?id=453828
Bug ID: 453828
Summary: Undo operation possible in lock-screen password field
(Ctrl-Z)
Product: plasmashell
Version: master
Platform: Other
OS: Linux
Status: REPORTED
Severity: normal
Priority: NOR
Component: Theme - Breeze
Assignee: plasma-bugs at kde.org
Reporter: christ.derek at gmail.com
CC: visual-design at kde.org
Target Milestone: 1.0
SUMMARY
It's possible to do Ctrl-Z and restore the previous written text in the
password entry field.
Consider the scenario where a user partly enters the password but then decides
to something else and not unlock the screen. The user then clears the password
field thinking the password cannot be restored by some other person.
Some other person can now hit Ctrl-Z and restore the password and make it
visible by clicking on the eye symbol.
STEPS TO REPRODUCE
1. Type something in the lock screen password field
2. Delete it
3. Hit Ctrl-Z
OBSERVED RESULT
Password restored
EXPECTED RESULT
Ctrl-Z should not be possible
SOFTWARE/OS VERSIONS
Operating System: Manjaro Linux
KDE Plasma Version: 5.24.5
KDE Frameworks Version: 5.93.0
Qt Version: 5.15.3
Kernel Version: 5.17.6-1-MANJARO (64-bit)
Graphics Platform: X11
--
You are receiving this mail because:
You are on the CC list for the bug.
More information about the Visual-design
mailing list