CVE-2009-2197
Apple Safari before 9.1 allows remote attackers to spoof the user interface via a web page that places text in a crafted context, leading to unintended use of that text within a Safari dialog.
Date published : 2016-03-23
http://lists.apple.com/archives/security-announce/2016/Mar/msg00005.html