I just re-tweeted this, and those who keep up to date on ColdFusionBloggers will see it as well, but just to help spread the news, please read Terry's blog post:
Questions about the FCKEditor Vulnerability in ColdFusion
I think folks may not be entirely happy with his post - but please post your comments directly to him.
FYI, I am working on - but don't want to promise anything just yet - so more support/discussion about this and other ColdFusion/security issues as well. I'll blog more when I can.