Gitlab: Account Takeover via Password Reset

5 points by samber 4 months ago | 3 comments
  • dimgl 4 months ago
    Great, my account actually just got hit with this. Are we absolutely sure this is solved?

    Thank the lord I didn't have anything all that important, and I was in front of my computer to change my password immediately.

    As far as I can tell, no one signed into my account. Pretty embarrassing vulnerability tbh...

    • zoidb 4 months ago
      (2023)
      • net01 4 months ago
        insane