Apple Updates Safari to 4.0.2
Apple fixes two security risks, and improves compatibility in an update provided to Safari 4.0 users today. The update, which weighs in at 40MBs for Leopard users "improves the stability of the Nitro JavaScript engine and includes the latest compatibility and security fixes."
The security update portion of Safari 4.0.2 will fix two security risks, one of which could allow an attacker to use cross-site scripting on maliciously coded sites. You can read more about the security update on the Apple knowledge base.