Headline
GHSA-4cw3-rhqx-vqwr: GilaCMS Cross Site Request Forgery vulnerability
Cross Site Request Forgery vulnerability in Gila GilaCMS v.1.11.4 allows a remote attacker to execute arbitrary code via the cm/update_rows/user
parameter.
GilaCMS Cross Site Request Forgery vulnerability
Moderate severity GitHub Reviewed Published Jun 20, 2023 to the GitHub Advisory Database • Updated Jun 21, 2023
Related news
CVE-2020-20726: There is a CSRF vulnerability that can add an administrator account · Issue #51 · GilaCMS/gila
Cross Site Request Forgery vulnerability in Gila GilaCMS v.1.11.4 allows a remote attacker to execute arbitrary code via the cm/update_rows/user parameter.