Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Wp Property Hive

First CVE: Jan 31, 2018Active for: 8 yearsTotal CVEs: 28

WP Property Hive is a developer of real-estate listing and property management plugins for WordPress, with a modest but focused vulnerability footprint concentrated in its PropertyHive and Houzez Property Feed products. The reported issues reflect integration and input-handling challenges typical of WordPress plugin ecosystems. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
14
Total CVEs
More Total CVEs than 94% of tracked vendors
1.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
6.2
Avg CVSS Score
Higher Avg CVSS Score than 36% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Wp Property Hive over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 31, 2018
8 years ago
Most Recent CVE
Feb 12, 2025
527 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (14 CVEs).

14 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2024-23513CRITICAL
Deserialization of Untrusted Data vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.5.
Feb 12, 20249.827NONO
CVE-2024-12585MEDIUM
The Property Hive WordPress plugin before 2.1.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which co
Jan 8, 20256.124NOYES
CVE-2024-27985HIGH
Deserialization of Untrusted Data vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.9.
Apr 11, 20248.823NONO
CVE-2018-6465MEDIUM
The PropertyHive plugin before 1.4.15 for WordPress has XSS via the body parameter to includes/admin/views/html-preview-applicant-matches-email.php.
Jan 31, 20186.122NONO
CVE-2023-22706MEDIUM
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in PropertyHive plugin <= 1.5.48 versions.
May 15, 20236.121NONO
CVE-2023-29172MEDIUM
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in PropertyHive plugin <= 1.5.46 versions.
Apr 7, 20236.121NONO
CVE-2024-8490MEDIUM
The PropertyHive plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.0.19. This is due to missing or incorrect nonce validation
Sep 17, 20246.520NONO
CVE-2024-24718MEDIUM
Missing Authorization vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.6.
Mar 26, 20246.520NONO
CVE-2025-0808MEDIUM
The Houzez Property Feed plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.4.21. This is due to missing or incorrect nonce va
Feb 12, 20255.419NONO
CVE-2024-34381MEDIUM
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PropertyHive allows Stored XSS.This issue affects PropertyHive: from n/a throu
May 6, 20245.419NONO
View all 14 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products14 CVEs
86%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network14 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low14 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None5 (35.7%)
Unknown0 (0.0%)
Required9 (64.3%)
Privileges Required
Low6 (42.9%)
High0 (0.0%)
None8 (57.1%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (14 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
7.1% of CVEs· 96th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Wp Property Hive.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Wp Property Hive — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Wp Property Hive's Products

View all 4 CNAs →

Top CWEs