An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.6, Safari 12.1.2. Visiting a malicious website may lead to address bar spoofing.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/zhanpengliu-tencent/medium-cve