| 11 Jan 2024 |
| Martijn joined the room. | 13:27:40 |
| tlaurion aka Insurgo [ Timezone: ET ] changed their display name from Insurgo aka tlaurion (UTC/GMT-5 : catching up) to Insurgo aka tlaurion [(UTC/GMT)-5]. | 19:54:22 |
| 12 Jan 2024 |
raitobezarius | There's a critical security vuln on GItLab atm enabling anyone to send the reset password link anywhere, it's being exploited in the wild: https://about.gitlab.com/releases/2024/01/11/critical-security-release-gitlab-16-7-2-released/#account-takeover-via-password-reset-without-user-interactions | 14:48:02 |
hexa | was communicated 15 hours ago in #gitlab:nixos.org | 14:54:52 |
hexa | and a fix has since been merged | 14:55:03 |
hexa | for reference: https://github.com/NixOS/nixpkgs/pull/280369 | 14:55:17 |
raitobezarius | well amazing people! | 14:55:30 |
| yadhukrishna joined the room. | 18:59:11 |
yadhukrishna | how to report security issues to nixos? | 18:59:34 |
K900 | You can post here | 18:59:42 |