Audit init*Event() method to make sure they reset internal data members.
Created attachment 325055 [details] Patch
Comment on attachment 325055 [details] Patch r224115
Comment on attachment 325055 [details] Patch View in context: https://bugs.webkit.org/attachment.cgi?id=325055&action=review > Source/WebCore/dom/MouseRelatedEvent.h:58 > + void setIsSimulated(bool value) { m_isSimulated = value; } protected instead?
If there was any effect of these changes, it would be nice to cover the effect in tests. Of course, the effects might be subtle so it might be hard to write tests.
Comment on attachment 325055 [details] Patch View in context: https://bugs.webkit.org/attachment.cgi?id=325055&action=review > Source/WebCore/dom/Event.cpp:93 > + m_underlyingEvent = nullptr; This doesn’t cover everything. A website could call initEvent on, say, a MouseEvent, and we might want it to reset a data member such as MouseEvent::m_dataTransfer. I am not sure what we should do about this.