Medium 6.5 2025-11-04< 3.6.1 Ohio Extra <= 3.6.0 - Authenticated (Contributor+) Stored Cross-Site Scripting WordfenceCVE
Medium 6.5 Unfixed 2025-03-15≤ 3.4.7 WordPress Ohio Theme Extra plugin <= 3.4.7 - Shortcode Injection vulnerability CVEEUVDPatchstackWordfence