Just got an alert from SANS.org about a vulnerability in all versions of Sendmail that could allow a hacker root or superuser access when sendmail is running with those privileges.
It looks like Sendmail 8.12.8 now available at Sendmail.org corrects this.