Input validation vulnerability in Image Slider by Ays- Responsive Slider and Carousel 2.5.0

The Image Slider by Ays- Responsive Slider and Carousel WordPress plugin had a security vulnerability before version 2.5.0. The plugin had a problem with its get_sliders() function which did not check the orderby parameter before using it in SQL statements sent to the database. This vulnerability allowed somebody to inject malicious SQL code into the admin dashboard

Detected in:

Image Slider by Ays- Responsive Slider and Carousel fixed vulnerable versions: >= * < 2.5.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.