CVE-2025-12570 | Fancy Product Designer Plugin up to 6.4.8 on WordPress SVG File Parser data-to-image.php cross site scripting
A vulnerability was found in Fancy Product Designer Plugin up to 6.4.8 on WordPress and classified as problematic. This vulnerability affects unknown code of the file data-to-image.php of the component SVG File Parser. Executing manipulation can lead to cross site scripting.
This vulnerability is registered as CVE-2025-12570. It is possible to launch the attack remotely. No exploit is available.