Ashe Extra
Ashe Extra has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2023 and 2024; all 2 are fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Missing Authorization, behind 2 of the records (100%).
Every one of the 2 issues recorded for Ashe Extra has a vendor fix available, so running the current release closes all known holes.
2 independent researchers contributed these findings, one record each. Ashe Extra is installed on roughly 2,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 0.
CVE-2024-56244Ashe Extra <= 1.2.92 - Missing Authorization
Read the full analysisVulnerability Records
Ashe Extra
Author
WP Royal
Adds One Click Demo Import functionality for Ashe theme. When activated you will be able to import Demo Content for the Ashe theme.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C