Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

PropertyHive — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in PropertyHive, with AI-generated Chinese analysis, references, and POCs.

This page is a vulnerability aggregation report for the PropertyHive product, focusing on web application and integration security weaknesses. It compiles a comprehensive list of known security issues, including critical flaws in authentication mechanisms, data leakage risks, and API injection vulnerabilities, covering incidents reported between 2020 and 2024. Visitors can effectively track the vendor’s advisory history to monitor response times and resolution status, gain a deeper understanding of specific weakness classes prevalent in real estate management software, and review the product’s long-term vulnerability history to assess overall security maturity and risk exposure over time. The data is structured to facilitate informed decision-making for security professionals, auditors, and stakeholders evaluating the safety of this property management solution. By centralizing this information, the page aims to reduce the manual effort required to investigate security postures and provide a clear, chronological view of how the product has evolved in addressing known threats. This resource serves as a factual reference point rather than a promotional overview, ensuring that users have access to transparent and verifiable security metrics. The aggregation method ensures that all significant entries are captured, allowing for trend analysis and comparative benchmarking against similar industry standards. Users are encouraged to utilize the filtering capabilities to isolate specific severity levels or categories relevant to their operational concerns.

Vendor: PropertyHive

CVE IDTitleCVSSSeverityPublished
CVE-2026-57381 WordPress PropertyHive plugin <= 2.2.3 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2026-07-13
CVE-2026-42729 WordPress PropertyHive plugin <= 2.2.2 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2026-05-27
CVE-2025-66088 WordPress PropertyHive plugin <= 2.1.12 - Broken Access Control vulnerability CWE-862 7.5 High2025-12-18
CVE-2025-66087 WordPress PropertyHive plugin <= 2.1.12 - Broken Access Control vulnerability CWE-862 4.3 Medium2025-11-21
CVE-2025-58612 WordPress PropertyHive Plugin <= 2.1.5 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium2025-09-03
CVE-2025-39577 WordPress PropertyHive plugin <= 2.1.2 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium2025-04-16
CVE-2024-37204 WordPress PropertyHive plugin <= 2.0.9 - Broken Access Control vulnerability CWE-862 4.3 Medium2024-11-01
CVE-2024-35701 WordPress PropertyHive plugin <= 2.0.13 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2024-06-08
CVE-2024-34381 WordPress PropertyHive plugin <= 2.0.10 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2024-05-06
CVE-2024-29923 WordPress PropertyHive plugin <= 2.0.8 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-03-27
CVE-2024-24718 WordPress PropertyHive plugin <= 2.0.6 - Missing Authorization to Non-Arbitrary Plugin Installation vulnerability CWE-862 4.3 Medium2024-03-26
CVE-2024-27985 WordPress PropertyHive plugin <= 2.0.9 - PHP Object Injection vulnerability CWE-502 5.4 Medium2024-03-21
CVE-2024-23513 WordPress PropertyHive Plugin <= 2.0.5 is vulnerable to PHP Object Injection CWE-502 8.7 High2024-02-12
CVE-2023-22706 WordPress PropertyHive Plugin <= 1.5.48 is vulnerable to Cross Site Scripting (XSS) CWE-79 7.1 High2023-05-15
CVE-2023-29172 WordPress PropertyHive Plugin <= 1.5.46 is vulnerable to Cross Site Scripting (XSS) CWE-79 7.1 High2023-04-07

All 15 known CVE vulnerabilities affecting PropertyHive with full Chinese analysis, references, and POCs where available.