Developers at the Tor Project have released the Tor Browser 8.5.2 to address the recently fixed zero-day flaw in Mozilla Firefox. The vulnerability, tracked as CVE-2019-11707, is a type confusion flaw in Array pop. Mozilla has addressed it with the release of Firefox 67.0.3 and Firefox ESR 60.7.1.1. The flaw was reported by Coinbase Security and Samuel Gro of Google Project Zero team. It is very important for Tor users to use the updated version to protect their anonymity. Android users should use the browser with safer or safest security levels.”]
Source: https://securityaffairs.co/wordpress/87373/security/tor-browser-8-5-2.html