A Cross-Site Request Forgery (CSRF) in GilaCMS v1.11.4 allows authenticated attackers to arbitrarily add administrator accounts.
- https://github.com/GilaCMS/gila/issues/51
No PoCs found on GitHub currently.