WordPress Photo Gallery 1.2.8 SQL Injection

WordPress Photo Gallery plugin version 1.2.8 suffers from a remote SQL injection vulnerability.