Woops... I sent the wrong CVE. There was one for Tornado that was also open and when I bopped back and forth between my windows I copy-pasted the wrong URL. Sorry. 

I'll try to figure out which one I'd pulled up from the scripts I ran on sudoroom.org yesterday (as opposed to the others that popped up from the other things I was looking at. *groan*).

- Lish  (feeling really dumb at the moment...)

On Thu, Mar 7, 2013 at 1:14 PM, Matthew Senate <mattsenate@gmail.com> wrote:
you should join our list sudo-sys :D http://lists.sudoroom.org/listinfo/sudo-sys

On Wed, Mar 6, 2013 at 6:56 PM, Lisha Sterling <lishevita@gmail.com> wrote:
I just wanted to give a heads up that we've got some cross-site scripting vulnerabilities in the sudoroom websever that sits at

for more info...

sudo-discuss mailing list
