CVE-2008-7220 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-7220): Unspecified vulnerability in Prototype JavaScript framework (prototypejs) before 1.6.0.2 allows attackers to make "cross-site ajax requests" via unknown vectors.
This doesn't appear to be in Portage anymore.