Forum OpenACS Q&A: Re: RFC: Security policy for OpenACS (Security hole in OpenACS 5.1!)

also if the sudo package checked the refer header and caused forced a login if it did not match the current site it would help prevent dumb stuff from happening.