📦 Propertyhive

by Wp Property Hive

🔍 What is Propertyhive?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-8490

HIGH CVSS 8.8 Sep 17, 2024

This CSRF vulnerability in the PropertyHive WordPress plugin allows unauthenticated attackers to change administrator account details (name, email, password) by tricking an admin into clicking a malic...

CVE-2024-29923

HIGH CVSS 7.1 Mar 27, 2024

This vulnerability allows attackers to inject malicious scripts into web pages generated by the PropertyHive WordPress plugin. When users visit a specially crafted URL, the script executes in their br...

CVE-2023-22706

HIGH CVSS 7.1 May 15, 2023

Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in the PropertyHive WordPress plugin allows attackers to inject malicious scripts via crafted URLs. When users click malicious links,...

CVE-2024-37204

MEDIUM CVSS 4.3 Nov 1, 2024

This CVE describes a Missing Authorization vulnerability in the PropertyHive WordPress plugin that allows attackers to exploit incorrectly configured access control security levels. It affects all Pro...

CVE-2024-35701

MEDIUM CVSS 6.5 Jun 8, 2024

This stored cross-site scripting (XSS) vulnerability in the PropertyHive WordPress plugin allows attackers to inject malicious scripts into web pages. When users view affected pages, the scripts execu...

CVE-2024-3607

MEDIUM CVSS 4.3 May 2, 2024

The PropertyHive WordPress plugin has a missing capability check in the delete_key_date() function, allowing authenticated users with subscriber-level access or higher to delete arbitrary posts. This ...