Original report at : about the python 
modifier roundup bugtracker.

This post :
July/002606.html seems to highlight that this is a roundup security 
issue while this confirms it :

XSS issues allow for many things including stealing session cookies. It 
might be worth to read the entire report on the python meta-tracker 
since it shows another issue closely related (also with the sort 

