S4E just found an informational finding from web sayfası erişilebilirlik kontrolü
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Mar 21, 2026

CP Image Store with Slideshow <= 1.0.67 - SQL Injection

Est. Time~10 seconds
Scan TypeGroup Scan
Targetsurl
CostFree
3.1k
Times Used
continuous scan runs
1
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
9.8
CVSS
Description

The CP Image Store with Slideshow WordPress plugin before 1.0.68 does not sanitise and escape the ordering_by query parameter before using it in a SQL statement in pages where the [codepeople-image-store] is embed, allowing unauthenticated users to perform an SQL injection attack

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
CP Image Store with Slideshow
AFFECTED< 1.0.68SAFE ✓≥ 1.0.68
Updated Sep 18, 2026View on NVD →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CP Image Store with Slideshow <= 1.0.67 - SQL Injection CVE-2022-1692 Scanner | S4E