Browser
Memory Corruption
WebKit - AXObjectCache - m_deferredFocusedNodeChange - UaF
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.
.png)
Overview
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in WebKit. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the sandboxed browser.
Vulnerability details
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code. A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in WebKit.
Disclosure timeline
2019-11-19 Reported to vendor on bugs.webkit.org
2020-03-12 Coordinated public release of Advisory
References
2026-06-17 (NVD record)
Credits
Sudhakar Verma, Ashfaq Ansari & Siddhant Badhe – Project Srishti of CloudFuzz.
















