lylme_spage v1.7.0 was discovered to contain a SQL injection vulnerability via the $userip parameter at function.php.