An issue was discovered in GitStack through 2.3.10. User controlled input is not sufficiently filtered, allowing an unauthenticated attacker to add a user to the server via the username and password fields to the rest/user/ URI.Referenceshttps://blogs.securiteam.com/index.php/archives/3557https://www.exploit-db.com/exploits/44356/