CVE-2026-84280 | radykal Fancy Product Designer Plugin up to 6.5.2 on WordPress Shortcode elements[].title cross site scripting

SecurityVulns

A vulnerability was found in radykal Fancy Product Designer Plugin up to 6.5.2 on WordPress. It has been declared as problematic. Affected is an unknown function of the component Shortcode Handler. Executing a manipulation of the argument elements[].title can lead to cross site scripting.

This vulnerability is registered as CVE-2026-84280. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More