FancyWP is a WordPress plugin vendor with a narrow product scope centered on the Starter Templates offering, which provides template and design functionality for site builders. Its documented vulnerability footprint centers on server-side request forgery weaknesses, reflecting risks inherent to a plugin that processes external template sources and user-controlled input. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fancywp over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-13924CRITICAL The Starter Templates by FancyWP plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and including, 2.0.0 via the 'http_request_host_is_e | Mar 8, 2025 | 9.1 | 28 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fancywp.
Media articles that mention a CVE ID that affects a product developed by Fancywp — matched by CVE ID, not by vendor name.