"Mozilla updated its flagship Firefox browser to version 2.0.0.2 and the legacy version to release 1.5.10. The updated browser fixes at least seven flaws, including a password vulnerability bug rated critical last November.
"The Mozilla Foundation Security Advisory 2007-02, broadly titled 'Improvements to help protect against Cross-Site Scripting attacks,' provides a fix for the password vulnerability flaw. The advisory is listed as having low impact, though the original bugzilla entry page for the password flaw listed the flaw as critical..."