Security news that informs and inspires

Archive

1 result for tag Account Takeover:

GitLab Patches Critical Account Takeover Flaw

The flaw (CVE-2023-7028) stems from the fact that user account password reset emails can be delivered to unverified email addresses.

Gitlab, Account Takeover