Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Radykal

First CVE: Jun 21, 2021Active for: 5 yearsTotal CVEs: 15
46.3
VTI Score
High

Radykal's vulnerability footprint centers on its Fancy Product Designer, a web-based design tool that is positioned prominently in its niche. Vulnerabilities affecting this product skew toward serious outcomes and frequently acquire public exploit code, with recurring exposure in web application-layer weakness classes including cross-site scripting, SQL injection, improper authorization, unsafe file uploads, and cross-site request forgery that are characteristic of interactive design platforms. Defenders should prioritize patching this vendor's advisories and audit access controls on instances exposed to untrusted users; current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
15
Total CVEs
More Total CVEs than 94% of tracked vendors
2.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 90% of tracked vendors
7.0
Avg CVSS Score
Higher Avg CVSS Score than 50% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Radykal over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 21, 2021
5 years ago
Most Recent CVE
Jan 16, 2026
189 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (15 CVEs).

15 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-24370CRITICAL
The Fancy Product Designer WordPress plugin before 4.6.9 allows unauthenticated attackers to upload arbitrary files, resulting in remote code execution.
Jun 21, 20219.869NOYES
CVE-2024-51818CRITICAL
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in radykal Fancy Product Designer fancy-product-designer.This issue affects Fancy
Jan 21, 20259.334NONO
CVE-2021-4096HIGH
The Fancy Product Designer plugin for WordPress is vulnerable to Cross-Site Request Forgery via the FPD_Admin_Import class that makes it possible for attackers to upload malicious
Apr 19, 20228.828NONO
CVE-2024-51919CRITICAL
Unrestricted Upload of File with Dangerous Type vulnerability in radykal Fancy Product Designer fancy-product-designer.This issue affects Fancy Product Designer: from n/a through <
Jan 21, 20259.025NONO
CVE-2021-4334HIGH
The Fancy Product Designer plugin for WordPress is vulnerable to unauthorized modification of site options due to a missing capability check on the fpd_update_options function in v
Oct 20, 20238.825NONO
CVE-2025-12570HIGH
The Fancy Product Designer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 6.4.8 due to insufficient in
Dec 12, 20257.224NONO
CVE-2021-4335MEDIUM
The Fancy Product Designer plugin for WordPress is vulnerable to unauthorized access to data and modification of plugin settings due to a missing capability check on multiple AJAX
Oct 20, 20236.322NONO
CVE-2025-13231MEDIUM
The Fancy Product Designer plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 6.4.8. This is due to a time-of-check/time-of-use
Dec 16, 20256.521NONO
CVE-2025-15526MEDIUM
The Fancy Product Designer plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 6.4.8. This is due to improper error handling in the PDF
Jan 16, 20265.320NONO
CVE-2025-13439MEDIUM
The Fancy Product Designer plugin for WordPress is vulnerable to Information Disclosure and PHAR Deserialization in all versions up to, and including, 6.4.8. This is due to insuffi
Dec 16, 20255.920NONO
View all 15 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products15 CVEs
60%
20%
20%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network15 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low12 (80.0%)
High3 (20.0%)
Unknown0 (0.0%)
User Interaction
None12 (80.0%)
Unknown0 (0.0%)
Required3 (20.0%)
Privileges Required
Low2 (13.3%)
High4 (26.7%)
None9 (60.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (15 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
6.7% of CVEs· 96th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Radykal.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Radykal — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Radykal's Products

View all 3 CNAs →

Top CWEs