Medium 5.8 Unfixed
2025-12-31≤ 4.2.3
CVE-2025-59003
Minimum safe version
4.2.3
Update to 4.2.3 or later to address 3 fixable vulnerabilities
CVE-2025-59003
Multiple Themes - Reflected Cross-Site Scripting via Customizer Notify
CVE-2023-25447
Multiple Themes (Various Versions) - Reflected Cross-Site Scripting
WordPress ColorWay Theme <= 3.4.1 - Cross Site Scripting
CVE-2016-10961