I must "out" myself as being another clueless web designer who left exactly this vulnerability in my own "email page to a friend" link, as recently as April 2009. Doh!
See, creative people have no "barrier to entry" and as long as I can write simple perl scripts, I can run them in my CGI bin. Not everyone is a gifted web designer, many of us have had no formal education in programming or security, and of course we are all struggling against spammers with a financial interest in locating exploits.
I feel empathy for those that you smarter people scoff at. Be kind! It wasn't for us dolts you woudn't *be* smart, you'd just be average!
Wendy Northcutt, the Darwin Awards
"Industries like technology where drug tests are used... Exactly that same sort of thing could happen to you. Let's imagine. Five years ago you tested positive for THC when a random test was required..."
I'd like to know what you're smoking.
I'm sorry that you've been convinced to let yourself be drug tested, and suffer fear from it. But you must understand that you're in a teeny-tiny minority of jobs that ask for that. Just say no.
NOWPRINT. NOWPRINT. Clemclone, back to the shadows again. - The Firesign Theater