Source status: Apple directly says the report used GLM from Z.AI. The credit is shared with other researchers; Bugflation does not infer that every credited organization used AI.
Summary
CVE-2026-64783 is a WebKit use-after-free that could lead to a crash when processing malicious web content. Apple names GLM from Z.AI in the accepted reporter credit, making this a direct attribution entry.
References
Catalogued in the Bugflation public ledger. Disagree with the attribution or severity label? Email the desk.