VendorsReal Estate Connectedeasy_property_listingsall versions
Vulnerabilities

Real Estate Connected Easy Property Listings

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2024-32799
WordPress Easy Property Listings plugin <= 3.5.3 - Broken Access Control vulnerability
Published 2024-06-09 · Analyzed
9.8EPSS 0.004
CVE-2020-5530
Cross-site request forgery (CSRF) vulnerability in Easy Property Listings versions prior to 3.4 allows remote attackers to hijack the authentication of administrators via unspecified vectors.
Published 2020-02-18 · Modified
8.8EPSS 0.008
CVE-2024-1893
Easy Property Listings <= 3.5.2 - Authenticated(Contributor+) SQL Injection via Shortcode
Published 2024-04-09 · Modified
8.8EPSS 0.008
CVE-2019-15817
The easy-property-listings plugin before 3.4 for WordPress has XSS.
Published 2019-08-30 · Modified
6.1EPSS 0.010
CVE-2024-2869
Easy Property Listings <= 3.5.3 - Admin+ Stored XSS
Published 2025-05-15 · Analyzed
4.8EPSS 0.003
CVE-2024-3163
Easy Property Listings < 3.5.4 - Arbitrary Contact Deletion via CSRF
Published 2024-09-12 · Analyzed
4.3EPSS 0.002