There seems to be some confusion at the extent of what has happened.
The issues that have been made public, are completely harmless. They are not backdoors into your forum. They will not break your forum.
The issue here is that some coders implemented a way to automatically click "Install" on vb.org whenever a product/plug-in was uploaded. The reason why we've decided to let users know about this, is because most of the time this happens with out the Admin's consent.
The "backdoor" involved here was with
www.vbulletin.org,
not your forum. External GET requests we're not being checked, which allowed certain authors to do this, but we now have blocked anything like this.
Your forum was never in jeopardy. Marco has bolded various statements in his post that further clarify this statement. We will not give out the names of the coders who did this, because it is not needed.
This new policy was put in place because we became aware that some products/plugins had unethical
(not to be mistaken with HARMFUL) code in them, and the staff felt that any unethical code should not be tolerated.
Harmful code was never (and never will be) tolerated on vbulletin.org.