A security researcher discovered an account takeover vulnerability in Sourcehut's build logs caused by improper XSS protection in the ansi2html library. The vulnerability allows attackers to craft malicious ANSI escape sequences that generate unsafe HTML links with JavaScript execution capabilities, potentially compromising user accounts accessing build logs.