A security vulnerability in the extension of LastPass password manager could have allowed stealing the credentials last used for logging into a website. Exploiting the bug was possible in Chrome and Opera web browsers and required some effort to be successful since the target needed to go through several steps. The makers of the password manager acknowledged the bug and on Friday they published an advisory announcing that they resolved the bug. The process is automated so users do not have to take any action. As a precaution, the company has deployed the update to all browsers.
Source: https://www.bleepingcomputer.com/news/security/password-revealing-bug-quickly-fixed-in-lastpass-extensions/

