> ... or the developers were stupid enough to develop with old code. Stupid may be a bit harsh. I find 'Software Security' is also a frame of mind that *must* be backed by education. Perhaps the developers lack the knowledge they need to model the threats and incorporate a secure architecture. Jeff - Hide quoted text - On 7/23/09, chris.boergermann@xxxxxxxxxx <chris.boergermann@xxxxxxxxxx> wrote: > An early release of 4.0.0 has the same problem! > > So Acajoom has a general security issue or the developers > were stupid enough to develop with old code. >