Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-4cw3-rhqx-vqwr: GilaCMS Cross Site Request Forgery vulnerability

Cross Site Request Forgery vulnerability in Gila GilaCMS v.1.11.4 allows a remote attacker to execute arbitrary code via the cm/update_rows/user parameter.

ghsa
#vulnerability#git

GilaCMS Cross Site Request Forgery vulnerability

Moderate severity GitHub Reviewed Published Jun 20, 2023 to the GitHub Advisory Database • Updated Jun 21, 2023

Related news

CVE-2020-20726: There is a CSRF vulnerability that can add an administrator account · Issue #51 · GilaCMS/gila

Cross Site Request Forgery vulnerability in Gila GilaCMS v.1.11.4 allows a remote attacker to execute arbitrary code via the cm/update_rows/user parameter.