CVE-2020-11530: Idangero Chop Slider

Critical severity, CVSS 9.8. EPSS: 95.7% chance of exploitation in the next 30 days.

A blind SQL injection vulnerability is present in Chop Slider 3, a WordPress plugin. The vulnerability is introduced in the id GET parameter supplied to get_script/index.php, and allows an attacker to execute arbitrary SQL queries in the context of the WP database user.

Affected products

Published 2020-05-08. Last modified 2026-06-17.