Comment by yjftsjthsd-h

17 hours ago

> removing every part of the --noremote option

What's this now? I'm using that to handle multiple profiles and haven't noticed anything breaking

they patched multiprofile to work WITH remote!

try it, start with --noremote. you will get the vulnerable rpc/dbus listener. start another "firefox --noremote https://example.com" and it will open on the previous process. ha!

yeah, and you never got a warning about that option going way uh? that's why I'm 80% sure it was malicious. too many convenient mistakes.