Another Top WordPress Plugin With Critical Security Flaws


  • Patchstack researchers discover two new flaws in Fancy Product Designer
  • Radykal-built WordPress plugin has over 20,000 active users
  • The flaws allow remote code execution, downloading arbitrary files, and more.

A popular WordPress plugin has been discovered to have two critical vulnerabilities that allow malicious actors to upload files, tamper with databases, and essentially take control of compromised websites.

To make matters worse, the vulnerabilities remained in the code for over six months, although developers were informed and are actively working on new versions in the meantime.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top