Firefox Installs non-free binaries from Cisco and Google again https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=915582
firefox: Safe Browsing updates fail due to insufficient quota on the Google API key https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=895147
Just recently I discovered DoH was activated by default now and bypassing my /etc/hosts block list without any warning. This opened me up to tracking from sites I thought I had blocked.
In all above cases the failure-modes are insecure. It's like a firewall that suddenly switches its enforcement policy from a deny-all+whitelisting to allow-all+blacklisting without properly informing users.
Totally unacceptable!