WordPress WP Photo Album Plugin “photo” SQL Injection

Application: WordPress WP Photo Album Plugin
Affected Version: 1.0 and prior versions.
Vendor’s URL: http://me.mywebsight.ws/web/wppa/
Bug Type: SQL Injection
Risk Level: Critical

Solution:
Update to version 1.1.