MS GDI+ Vulnerability
Like many third-party Windows applications, FolderSizes installs the GDI+ graphics device library (gdiplus.dll). Recently it was discovered that certain versions of this DLL (including the one distributed with FolderSizes) are vulnerable to a JPEG component buffer overflow security exploit.
As of late September 27th, the FolderSizes 2.7.0.1 distribution package was updated to include the latest version of gdiplus.dll (which corrects the vulnerability mentioned above).
As always, you can download the latest version of FolderSizes from http://www.foldersizes.com.