Hacker News new | ask | show | jobs
by dataflow 54 days ago
> Why does Chromium version lag matter?

> users are exposed to known, already-patched security vulnerabilities

Then why only focus on major versions? Don't minor versions/revisions have security fixes?

2 comments

Yes and also stable isn't the only maintained branch of Chromium, there's also extended stable (currently 146.x). LTS exists too (144.x), but I believe it's meant only for ChromeOS.
The Vivaldi build I have locally explicitly mentions "Extended Stable channel (may also include additional security patches)" on its "About" page.
The most recent updates says it includes the 147 security fixes too "[Chromium] Update to 146.0.7680.218 ESR (includes security fixes from 147.0.7727.137/138)" https://vivaldi.com/blog/desktop/minor-update-eight-7-9/
The website does seem fairly misleading, if you and GP are correct.
In a perfect world, there would be a stable version of chrome, that would get fixes, but would crucially not get the new features that introduce new vulnerabilities. Not a fun job, I know, but with today’s coding agents it wouldn’t even be an unreasonable ask.