Correct me if I'm wrong but it seems that this isn't even old news. It's by design - something inherent to OAuth authentication scheme.
Also both CNet and the original are so light on details it's scary. I get the feeling though that we've entered an era for "vulnerability sites" - instead of CVEs we're now getting marketing.