Gitlab flaw allowing account hijacking under active exploitation

https://arstechnica.com/security/2024/05/0-click-gitlab-hijacking-flaw-under-active-exploit-with-thousands-still-unpatched/
{
"by": "crazydoggers",
"descendants": 1,
"id": 40240336,
"kids": [
40240358
],
"score": 6,
"time": 1714677425,
"title": "Gitlab flaw allowing account hijacking under active exploitation",
"type": "story",
"url": "https://arstechnica.com/security/2024/05/0-click-gitlab-hijacking-flaw-under-active-exploit-with-thousands-still-unpatched/"
}
{
"author": null,
"date": null,
"description": null,
"image": null,
"logo": null,
"publisher": "Ars Technica",
"title": "403 Forbidden",
"url": "https://arstechnica.com/security/2024/05/0-click-gitlab-hijacking-flaw-under-active-exploit-with-thousands-still-unpatched/"
}
null