Critical Security Vulnerability in Firefox 3.5 and 3.6

by Developer.com Staff

Until a patch is released, Mozilla recommends users either disable JavaScript or use the NoScript plugin.

Mozilla has issued a critical security alert affecting users of Firefox 3.5 and 3.6.

"Users who visited an infected site could have been affected by the malware through the vulnerability," the announcement said. "The trojan was initially reported as live on the Nobel Peace Prize site, and that specific site is now being blocked by Firefox's built-in malware protection. However, the exploit code could still be live on other websites."

Until a fix is made available, Mozilla recommends using the NoScript plugin or disabling JavaScript in Firefox.

This article was originally published on Wednesday Oct 27th 2010
Mobile Site | Full Site