CVE-2023-28698: Wddgroup Fantsy

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Wade Graphic Design FANTSY has a vulnerability of insufficient authorization check. An unauthenticated remote user can exploit this vulnerability by modifying URL parameters to gain administrator privileges to perform arbitrary system operation or disrupt service.

Affected products

Published 2023-06-02. Last modified 2026-06-17.