That was what a pretty tech-savvy friend of mine said. Funnily enough Velocio recommended it too. Here's his reply in case anyone is worried:
You are fine.
It was patched within minutes of the security updates being announced as I happened to spot it that fast via Hacker News.
And because we use perfect forward secrecy, older traffic that anyone has logged remains encrypted.
Finally I have reissued the certificates via RapidSSL using the original certificate signing request and a new private key. So we have new certs, though they show the original dates as it's considered a reissue.
The chance of anything being intercepted is close to zero, and the risk to your LFGSS password is even smaller.
All that said, if you happen to use the same password for every service, then it's a good idea not to do that and to look at something like LastPass and change your password out of good habit.
That was what a pretty tech-savvy friend of mine said. Funnily enough Velocio recommended it too. Here's his reply in case anyone is worried: