UPDATE : Orkut was quick enough to Fix This Loop Hole. If you watch the video, You can still get an Idea of what we were talking about.
Yes! If you ignore this, you don’t care for your privacy.
Important Note : By making the issues public, our only aim is to expose the weakness in some orkut features to the orkut staff so that the issue may be fixed before something bad happens with you or your account. An XSS hole was detected in the album section of profiles a day or two ago and once the issue was out on orkut, many orkut profiles were on a rage, exploiting this loop hole to their advantage. As a matter of fact, a video is also out on you tube, explaining and confirming the loop hole. For those who doubt the genuineness, can confirm by navigating to Our Support Profile and clicking on the album section.
Note: This is just a demo and in NO way will harm you, or your account.
We hope that orkut takes necessary and immediate action to fix this out as they did in case of feeds
Conclusion : Clicking on Album of unknown profiles or if you are prompted to is not at all safe. This may easily result in account hijacking.