PT-2025-42426 · WordPress · Truelysell Core

István Márton

·

Published

2025-10-16

·

Updated

2025-10-21

·

CVE-2025-10742

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Truelysell Core plugin for WordPress versions up to and including 1.8.6
Description The Truelysell Core plugin for WordPress is susceptible to unauthorized user password modification. This occurs because the plugin allows user-controlled access to objects, enabling attackers to bypass authorization and access system resources. Unauthenticated attackers can exploit this to change user passwords, potentially gaining control of administrator accounts. The exploitation requires knowledge of a page containing the 'truelysell edit staff' shortcode.
Recommendations Versions prior to 1.8.6 are affected. Update to a version newer than 1.8.6. Limit access to the page containing the 'truelysell edit staff' shortcode. Enable multi-factor authentication. Monitor system activity for suspicious behavior.

Fix

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-10742

Affected Products

Truelysell Core