SourceHut account takeover via build logs (XSS in ansi2html.py) | CVE-2026-92973 1 ▲ Arusekk blog 1 day ago · Tech · hide · 0 comments A wormable vulnerability allowed anyone able to inject text in a build log on builds.sr.ht (or other instances) to take over accounts who viewed them No comments yet. Log in to reply on the Fediverse. Comments will appear here.