This issue was addressed through improved state management. This issue is fixed in macOS Ventura 13.7, macOS Sonoma 14.7, macOS Sequoia 15. Visiting a malicious website may lead to user interface spoofing.
https://support.apple.com/en-us/121247
https://support.apple.com/en-us/121238
https://support.apple.com/en-us/121234
http://seclists.org/fulldisclosure/2024/Sep/41