You make valid points, though I think you would be interested in this.
Yeah Dragon Byte have been more than active on that situation and would imagine they are the ones that asked vbulletin.com to publish it, They have even gone to the extent of hiring a security expert to audit their modifications.
I think ive received the best part of 5 emails from Dragon Byte this week alone. They are also on pretty much every forum you can think of getting the word out. .