CVE-2025-8572 | Truelysell Core Plugin up to 1.8.7 on WordPress User Registration user_role Remote Code Execution
A vulnerability was found in Truelysell Core Plugin up to 1.8.7 on WordPress and classified as critical. This affects an unknown function of the component User Registration Handler. Executing a manipulation of the argument user_role can lead to Remote Code Execution.
This vulnerability appears as CVE-2025-8572. The attack may be performed from remote. There is no available exploit.