So much for Open software being more secure....
It is more secure. Post #4 is one reason why.
This vulnerability appears to affect ...
Internet Explorer, Firefox, Mozilla, and SeaMonkey -- on Windows, Linux, and the Mac
Rather than being something wrong with open source processes, it sounds more to me like it is an issue with javascript itself. It also sounds like someone would have to go through a lot of trouble to be affected by this.
The flaw isn't in the affected browsers but in Java. So this shouldn't count as a black mark on Firefox, nor on IE or any of the other browsers.
I guess they could have included a security feature to plug this hole, but it's not their hole.