Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fancy Product Designer MEDIUM 5.9
CVE-2024-0904

The Fancy Product Designer WordPress plugin before 6.1.81 does not sanitise and escape some of its settings, which could allow high privilege users s…

Fix: 6.1.81+
Fix from $1,600 2024-05-06
Fancy Product Designer MEDIUM 6.3
CVE-2024-0905

The Fancy Product Designer WordPress plugin before 6.1.8 does not sanitise and escape a parameter before outputting it back in the page, leading to a…

Fix: 6.1.8+
Fix from $1,600 2024-04-26
Fancy Product Designer MEDIUM 6.5
CVE-2024-0365

The Fancy Product Designer WordPress plugin before 6.1.5 does not properly sanitise and escape a parameter before using it in a SQL statement, leadin…

Fix: 6.1.5+
Fix from $1,600 2024-03-18
Fancy Product Designer HIGH 8.8
CVE-2021-4334

The Fancy Product Designer plugin for WordPress is vulnerable to unauthorized modification of site options due to a missing capability check on the f…

Fix: 4.7.0+
Fix from $1,950 2023-10-20
Fancy Product Designer MEDIUM 6.3
CVE-2021-4335

The Fancy Product Designer plugin for WordPress is vulnerable to unauthorized access to data and modification of plugin settings due to a missing cap…

Fix: 4.7.0+
Fix from $1,600 2023-10-20
Fancy Product Designer HIGH 8.8
CVE-2021-4096

The Fancy Product Designer plugin for WordPress is vulnerable to Cross-Site Request Forgery via the FPD_Admin_Import class that makes it possible for…

Fix: after 4.7.5
Fix from $1,950 2022-04-19
Fancy Product Designer CRITICAL 9.8
CVE-2021-24370EPSS 47%

The Fancy Product Designer WordPress plugin before 4.6.9 allows unauthenticated attackers to upload arbitrary files, resulting in remote code executi…

Fix: 4.6.9+
Fix from $2,300 2021-06-21