This is the most accurate assessment. Considering how "not secure" email is in general and how easy it is for this information to be passed around behind the scenes this is almost a non-story.
I feel this article really stunk of an attempt to over-sensationalize some sloppy coding that is probably happening on 50% of the websites in the world. To think otherwise is nothing but a utopian view of reality.