Racerbob One after another. Makes me wonder what is going on at Mozilla. Available via Internal Update and here: https://ftp.mozilla.org/pub/firefox/releases/136.0.4/win64/en-US/ The release notes state that this is a security fix. https://www.mozilla.org/en-US/firefox/136.0.4/releasenotes/?utm_source=firefox-browser&utm_medium=firefox-desktop&utm_campaign=about-dialog
winchester73 Correct, only Firefox on Windows https://www.mozilla.org/en-US/security/advisories/mfsa2025-19/
px_eliezer_ Mozilla warns Windows users of critical Firefox sandbox escape flaw Mozilla has released Firefox 136.0.4 to patch a critical security vulnerability that can let attackers escape the web browser’s sandbox on Windows systems. Tracked as CVE-2025-2857, this flaw is described as an “incorrect handle could lead to sandbox escapes” and was reported by Mozilla developer Andrew McCreight. The vulnerability impacts the latest Firefox standard and extended support releases (ESR) designed for organizations that require extended support for mass deployments. Mozilla fixed the security flaw in Firefox 136.0.4 and Firefox ESR versions 115.21.1 and 128.8.1. While Mozilla didn’t share technical details regarding CVE-2025-2857, it said the vulnerability is similar to a Chrome zero-day exploited in attacks and patched by Google earlier this week. https://www.bleepingcomputer.com/news/security/mozilla-warns-windows-users-of-critical-firefox-sandbox-escape-flaw/