Oh, so that wasn't just me! I also disabled isp management and automatic upgrades, but it was still upgraded. That was the update where they removed telnet access. When I called them, they claimed not to know of anything, so I assume it was AVM that pushed it. Probably the same thing would have happened if it would not be isp-issued.
Been disabled for years, iirc for modern FritzBoxes there is nearly no way any more for jailbreaking.
Makes sense though as many phishing attacks went through that avenue. A pity that when one as a vendor gives the ability of lowlevel access to appliances installed in homes, evil people will exploit it in a heartbeat...