XSS vulnerabilities

I was quite impressend when I discovered this security hole in the sidebar plugin. It should be clear that all kind of feeds are potentially insecure but obviously the Google guys forgot about that.

I reported the bug a couple of hours ago, we'll see how much time they need to fix it and whether I'll get a reply ;-)