UPDATED 13:04 PM EST, December 13, 2012
The Register reports the issue presents an scenario where an attacker can identify your clicks even when not active within the Web browser. This capability could defeat the security of logging into a secure Web site using a screen-based keyboard to avoid keylogger software.




