IE Cumulative Patch on the way
Just in, but several sources are reporting that a new cumulative patch for IE will be release shortly. Thank goodness!
This one appears to fix the ability run a script in the local machine zone, the HTML Application “stomp over” problem and the URL obfuscation problem. It will also remove credential embedding in HTTP and HTTPs URLs. They say that MSXML for XMLHTTP since credential embedding won't be supported there either. Finally, theres a “refinement“ of the “navigation back to Local Machine Zone“ fix that was in the last patch.
Sounds like a good one to get into your deployment system ASAP.