I wouldn't be too concerned about man-in-the-middle attacks on https pages because I think the encryption is fairly secure.
But if your web browser is using extensions such as ad blockers, many extensions have complete access to what your web browser is sending and receiving before https...