Max-severity Gitlab flaw allowing account hijacking under active exploitation

https://arstechnica.com/security/2024/05/0-click-gitlab-hijacking-flaw-under-active-exploit-with-thousands-still-unpatched/
{
"by": "Brajeshwar",
"descendants": 1,
"id": 40247471,
"kids": [
40249151
],
"score": 2,
"time": 1714743048,
"title": "Max-severity Gitlab flaw allowing account hijacking under active exploitation",
"type": "story",
"url": "https://arstechnica.com/security/2024/05/0-click-gitlab-hijacking-flaw-under-active-exploit-with-thousands-still-unpatched/"
}
{
"author": null,
"date": null,
"description": null,
"image": null,
"logo": null,
"publisher": "Ars Technica",
"title": "403 Forbidden",
"url": "https://arstechnica.com/security/2024/05/0-click-gitlab-hijacking-flaw-under-active-exploit-with-thousands-still-unpatched/"
}
null