0day Signal@0dayPublishingDisclosure
The post announces CVE-2025-8572, explaining that a parameter validation flaw in Truelysell Core up to 1.8.7 permits unauthenticated users to create admin accounts, and provides a link that likely contains further vulnerability details.
Säkerhetsbloggen@SakerhetsbloggDisclosure
The post discloses a privilege escalation flaw (CVE-2025-8572) in Truelysell Core for WordPress and urges users to upgrade to mitigate the issue.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
This entry announces CVE-2025-8572, a privilege escalation flaw in the Truelysell Core WordPress Plugin that manipulates user roles; no PoC, exploit, patch, or active exploitation details are provided.
The Hacker Wire@TheHackerWireDisclosure
The text announces a privilege escalation vulnerability (CVE‑2025‑8572) in Truelysell Core WordPress plugin, caused by insufficient validation of the user_role parameter. No PoC, exploit, or patch details are provided.
CVE@CVEnewDisclosure
The post announces that Truelysell Core WordPress plugin versions up to 1.8.7 are vulnerable to privilege escalation due to insufficient validation.