PT-2025-36348 · WordPress · Rehub - Price Comparison

Matthew Rollings

·

Published

2025-09-06

·

Updated

2025-09-06

·

CVE-2025-7368

CVSS v3.1
5.3
VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Name of the Vulnerable Software and Affected Versions:

REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme versions prior to 19.9.8

Description:

The REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme for WordPress is susceptible to information exposure due to insufficient restrictions on post inclusion within the `ajax action re getfullcontent` function. This allows unauthenticated attackers to extract data from password-protected posts without authorization.

Recommendations:

Update REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme to version 19.9.8 or later.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2025-7368

Affected Products

Rehub - Price Comparison