CVE-2020-11530: Idangero Chop Slider
Critical severity, CVSS 9.8. EPSS: 95.7% chance of exploitation in the next 30 days.
A blind SQL injection vulnerability is present in Chop Slider 3, a WordPress plugin. The vulnerability is introduced in the id GET parameter supplied to get_script/index.php, and allows an attacker to execute arbitrary SQL queries in the context of the WP database user.
Affected products
- Idangero Chop Slider: version 3.0 only
Published 2020-05-08. Last modified 2026-06-17.