Using Firefox? Update Now [1]
Mozilla has patched a vulnerability in Firefox that's being actively exploited by hackers, download the latest version to avoid issues.
A newly discovered vulnerability in Firefox has been patched and an updated version released. If you use Firefox, grab the latest version here:
Download the Firefox Browser [3]
Firefox normally checks for updates when it's launched, but if you use it and haven't been prompted to download/update to version 72.0.1 download and install it manually or check for updates manually through the Help menu.
The vulnerability can allow an attacker to exploit Javascript code to silently enter a PC and install malicious code outside of the browser on the host computer. Firefox 72 had only been out a few days before the vulnerability was discovered and an update version was made available for download.
The bug was discovered by Qihoo 360 two days after the initial update was released.
The vulnerability is patched in Firefox 72.0.1 and Firefox Extended Support Release (ESR) 68.4.1.
(h/t TechCrunch [4])
You can find more Tech Treats here [5].