mox to [email protected] • 8 months agoMaximum-severity GitLab flaw allowing account hijacking under active exploitationarstechnica.commessage-square6fedilinkarrow-up1139cross-posted to: [email protected]
arrow-up1139external-linkMaximum-severity GitLab flaw allowing account hijacking under active exploitationarstechnica.commox to [email protected] • 8 months agomessage-square6fedilinkcross-posted to: [email protected]
minus-square@[email protected]linkfedilink39•8 months agoSomehow they let attackers send themselves password reset links to arbitrary Gitlab accounts, apparently. Not good.
Somehow they let attackers send themselves password reset links to arbitrary Gitlab accounts, apparently. Not good.