Ashe Extra

Ashe Extra has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2023 and 2024; all 2 are fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.

The most common weakness is Missing Authorization, behind 2 of the records (100%).

Every one of the 2 issues recorded for Ashe Extra has a vendor fix available, so running the current release closes all known holes.

2 independent researchers contributed these findings, one record each. Ashe Extra is installed on roughly 2,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 0.

Strategic Overview

Avg CVSSMedium
4.3/ 10
Patch Coverage100%
Open

0

Fixed

2

Get automatic notifications for all Ashe Extra vulnerabilities before they are exploited.

Highest severity on recordCVSS 4.3CVE-2024-56244

Ashe Extra <= 1.2.92 - Missing Authorization

Read the full analysis

Vulnerability Records

2 records
Plugin Profile
Latestv1.4

Ashe Extra

WP Royal

Author

WP Royal

0.0(0)
0/100
Last Updated
2026-07-21 (2mo ago)
Active Installs
2,000+
Downloads
65,123
Requires WP
4.6+
Requires PHP
0+
Tested up to
WP 0
Created
2020-07-06 (6y ago)

Adds One Click Demo Import functionality for Ashe theme. When activated you will be able to import Demo Content for the Ashe theme.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C