if the exception raises in some extension in the user profile and the page can catch path to the user profile and so a remote attacker will know the user login PoC: https://bugzilla.mozilla.org/attachment.cgi?id=164547