Post #232822 2.11K Sep 24, 2026, 20:30 UTC Sourcehut account takeover via build logs (XSS in ansi2html)Article, Comments Arusekk blog SourceHut account takeover via build logs (XSS in ansi2html.py) | CVE-2026-92973 A wormable vulnerability allowed anyone able to inject text in a build log on builds.sr.ht (or other instances) to take over accounts who viewed them 🔥 5 🌭 3 🤬 1