CVE-2018-6465: Wp-Property-Hive Propertyhive

Medium severity, CVSS 6.1. EPSS: 1.6% chance of exploitation in the next 30 days.

The PropertyHive plugin before 1.4.15 for WordPress has XSS via the body parameter to includes/admin/views/html-preview-applicant-matches-email.php.

Affected products

Published 2018-01-31. Last modified 2026-06-17.