
Hacker News: Front Page
shared a link post in group #Stream of Goodies

www.theregister.com
2FA-less GitLab users vulnerable to account takeovers
GitLab admins should apply the latest batch of security patches pronto given the new critical account-bypass vulnerability just disclosed. Tracked as CVE-2023-7028, the maximum-severity bug exploits