An attacker could have executed unauthorized scripts on top origin sites using a JavaScript URI when opening an external URL with a custom…
mozilla·CWE-83·Published 2024-02-22