A week ago, bugtraq posted information about a potential Lotus Notes (actually, Domino) vulnerability related to attachments.  IBM has published a technote today, outlining the very limited scenarios where this issue can occur, and the continued recommendation that web-based Domino mail users should use Domino Web Access.
Link: IBM Technote: Bugtraq posting titled "Cross site scripting in Lotus Notes web mail" >
(PS: The location field is a reference to today's Cingular/Blackberry seminar, held at McDonald's corporate campus in Oakbrook, Illinois.  Thanks to those who attended :)

