PT-2025-42426 · WordPress · Truelysell Core
István Márton
·
Published
2025-10-16
·
Updated
2025-10-21
·
CVE-2025-10742
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Truelysell Core plugin for WordPress versions up to and including 1.8.6
Description
The Truelysell Core plugin for WordPress is susceptible to unauthorized user password modification. This occurs because the plugin allows user-controlled access to objects, enabling attackers to bypass authorization and access system resources. Unauthenticated attackers can exploit this to change user passwords, potentially gaining control of administrator accounts. The exploitation requires knowledge of a page containing the 'truelysell edit staff' shortcode.
Recommendations
Versions prior to 1.8.6 are affected.
Update to a version newer than 1.8.6.
Limit access to the page containing the 'truelysell edit staff' shortcode.
Enable multi-factor authentication.
Monitor system activity for suspicious behavior.
Fix
IDOR
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Truelysell Core