Summerpearlgroup operates a vacation rental management platform that serves a specialized, focused market; its vulnerability profile centers consistently on access-control and authorization weaknesses including user-controlled key bypass, improper access control, sensitive information exposure, and code injection. These weakness classes reflect the authentication and data-isolation demands typical of multi-tenant SaaS platforms where guest and operator privilege boundaries require careful enforcement. Live severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Summerpearlgroup over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-63561HIGH Summer Pearl Group Vacation Rental Management Platform prior to 1.0.2 is susceptible to a Slowloris-style Denial-of-Service (DoS) condition in the HTTP connection handling layer, w | Oct 31, 2025 | 7.5 | 25 | NO | NO |
CVE-2025-63563MEDIUM Summer Pearl Group Vacation Rental Management Platform prior to v1.0.2 does not properly invalidate active user sessions after a password change. This allows an attacker with a val | Oct 31, 2025 | 6.5 | 22 | NO | NO |
CVE-2025-63562MEDIUM Summer Pearl Group Vacation Rental Management Platform prior to v1.0.2 suffers from insufficient server-side authorization. Authenticated attackers can call several endpoints and p | Oct 31, 2025 | 6.3 | 22 | NO | NO |
CVE-2025-5182HIGH A vulnerability has been found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1 and classified as critical. This vulnerability affects unknown code of the comp | May 26, 2025 | 7.5 | 21 | NO | NO |
CVE-2025-5184HIGH A vulnerability was found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1. It has been classified as problematic. Affected is an unknown function of the compo | May 26, 2025 | 7.5 | 20 | NO | NO |
CVE-2025-5183MEDIUM A vulnerability was found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1 and classified as problematic. This issue affects some unknown processing of the com | May 26, 2025 | 4.7 | 15 | NO | NO |
CVE-2025-5181MEDIUM A vulnerability, which was classified as problematic, was found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1. This affects an unknown part of the file /spg | May 26, 2025 | 4.1 | 14 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Summerpearlgroup.
Media articles that mention a CVE ID that affects a product developed by Summerpearlgroup — matched by CVE ID, not by vendor name.