CVE-2019-11456: Gilacms Gila CMS

High severity, CVSS 8.8. EPSS: 0.9% chance of exploitation in the next 30 days.

Gila CMS 1.10.1 allows fm/save CSRF for executing arbitrary PHP code.

Affected products

  • Gilacms Gila CMS: version 1.10.1 only

Published 2019-04-22. Last modified 2026-06-17.