what exacly is getting fixed? I'm a FF user but i don't use or like the WYSIWYG editor.
Mozilla Corp, made a stupid move IMO anyway, in the PR/RC stages the Useragent reads as
0.10.X which vBulletin sees as 0.1 by default, which it is if you think about it. So the wysiwyg is only designed to work on FF .6 + not .1 this changes it to work with .10
My useragent reads as 1.0RC2 from install
And you cant spec moz to think "oh, vB's WYS is not designed to work with this useragent, we cant use it!", specially since they use *shrugs* phpBB for their forums.
Mozilla Corp, made a stupid move IMO anyway, in the PR/RC stages the Useragent reads as
0.10.X which vBulletin sees as 0.1 by default, which it is if you think about it. So the wysiwyg is only designed to work on FF .6 + not .1 this changes it to work with .10
Only the PR is named 0.10 (the latest release is 0.10.1). The release candidates show up as 1.0RC (or 1.0RC2).
I am sure he means it's a bug and can be considered a security hole though.
Bug yes, security hole no.
Honestly don't know if its worth applying the fix for a non-stable browser anyway, and seeing has the new version of firefox works correctly with the old code now. If you still want to run the PR you can always fix it from your end by changing the useragent.