Related Vulnerabilities: CVE-2021-23959  

A security issue was found in Firefox before version 85.0. A cross-site scripting (XSS) bug in the internal error pages could have led to various spoofing attacks, including other error pages and the address bar. Note: This issue only affected Firefox for Android. Other operating systems are unaffected.

Severity Medium

Remote Yes

Type Cross-site scripting

Description

A security issue was found in Firefox before version 85.0. A cross-site scripting (XSS) bug in the internal error pages could have led to various spoofing attacks, including other error pages and the address bar.

Note: This issue only affected Firefox for Android. Other operating systems are unaffected.

AVG-1493 firefox 84.0.2-1 85.0-1 Medium Not affected

https://www.mozilla.org/en-US/security/advisories/mfsa2021-03/#CVE-2021-23959
https://bugzilla.mozilla.org/show_bug.cgi?id=1659035