When using an invalid protocol scheme, an attacker could spoof the address bar.
Note: This issue only affected Android operating systems. Other operating systems are unaffected.
*Note: This issue is a different issue from CVE-2025-0244. This vulnerability affects Firefox < 134.
References