I’ve just released 2.51 which should fix the warnings.

In case anyone else has the same problem: in 3.5 WordPress changed the way the ‘prepare’ function is called.  Apparently some plugins were using it incorrectly and thus exposed to SQL injection hacks.  TurboCSV was safe, but didn’t use the additional parameter that is now required – thus the warning.