Apple has fixed the vulnerability that David Vieira-Kurz of MajorSecurity had discovered last month, which could be exploited to spoof URLs in the address bar.
Malicious websites could make use of the vulnerability to spoof their domain name to a URL the user might trust, and ask for sensitive information like login credentials, credit card numbers etc.
