CVE-2018-6465: Wp-Property-Hive Propertyhive
Medium severity, CVSS 6.1. EPSS: 1.6% chance of exploitation in the next 30 days.
The PropertyHive plugin before 1.4.15 for WordPress has XSS via the body parameter to includes/admin/views/html-preview-applicant-matches-email.php.
Affected products
- Wp-Property-Hive Propertyhive: before 1.4.15 (fixed in 1.4.15)
Published 2018-01-31. Last modified 2026-06-17.