-
-
Notifications
You must be signed in to change notification settings - Fork 28
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Firefox Zero-day (CVE-2024-9680) #227
Comments
We will update as quickly as possible, but the disclosed vulnerabilities do not immediately put your device at risk. |
It's been 1 month |
Update: It's been confirmed it is being exploited in the wild. |
So... |
Oct 11, 'as quick as possible'. December 9... |
Hello, after three months the urge to get the latest version is slowly rising. |
im still waiting, for now i temporarily use Firefox mainline |
Latest update to my system purged this from existence as it should |
FYI Arch repos are now just a redirect to plain firefox due to this |
^ This is the way 👌 |
Recently Firefox patched the CVE-2024-9680 zero-day in the following versions:
Currently Mercury is based on Firefox 192.0.02 which means it's vulnerable. My suggestion is due to low update activity to switch to Firefox's ESR release due to their slower, but more stable release cycle also reducing the need for you to update Mercury, if not at least update the browser to the latest Firefox version with the vulnerabilities patched, because according to Mozilla the vulnerability is already being exploited.
The text was updated successfully, but these errors were encountered: