VYPR

Propertyhive

by Wp Property Hive

CVEs (6)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2024-23513Hig0.578.70.01Feb 12, 2024Deserialization of Untrusted Data vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.5.
CVE-2024-29923Hig0.467.10.00Mar 27, 2024Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PropertyHive allows Reflected XSS.This issue affects PropertyHive: from n/a through 2.0.8.
CVE-2024-34381Med0.426.50.00May 6, 2024Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PropertyHive allows Stored XSS.This issue affects PropertyHive: from n/a through 2.0.10.
CVE-2024-27985Med0.355.40.00Apr 11, 2024Deserialization of Untrusted Data vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.9.
CVE-2024-3607Med0.284.30.00May 2, 2024The PropertyHive plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the delete_key_date() function in all versions up to, and including, 2.0.12. This makes it possible for authenticated attackers, with subscriber-level access and above, to delete arbitrary posts
CVE-2024-24718Med0.284.30.00Mar 26, 2024Missing Authorization vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.6.