Because I'm the one that discovered / reported it .

Matt Murphy (some dude) reported it to IDefense before I did, but AOL didn't release a security bulletin. I discovered it independently and reported it to Secunia, Secunia released a bulletin, followed by IDefense. IDefense was working with AOL when I found it. I tried contacting AOL for 2 weeks, then I went to Secunia, and waited another week. Then Secunia reported it. Turns out nobody was checking the security reports on the AOL website.
BTW Everyone
Latest AIM is v. 5.9.3690

edit: unfortunately, common sense wouldn't have helped much with this one
Just having AIM and a browser would have done it.