Tag: bug reports
1 article

GitLab Exposes Private Email Addresses to Code Push Risks
GitLab's helpful hack for easy bug reporting has turned into a security risk, with researchers discovering that publicly exposed email addresses can be easily manipulated to create unauthorized merge requests. Simply tweaking a few characters in the address can open up a project's inner workings to potential code push risks.