Home/Product/vcita online booking \& scheduling calendar
Product

vcita online booking \& scheduling calendar

19 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-67559
< 4.6.0
Missing Authorization vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcit
5.4MEDIUM
CVE-2025-67472
< 4.6.0
Cross-Site Request Forgery (CSRF) vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-sched
4.3MEDIUM
CVE-2025-54677
< 4.5.5
Unrestricted Upload of File with Dangerous Type vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita
9.1CRITICAL
CVE-2025-54676
< 4.5.5
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in vcita Online Booking & Sched
6.5MEDIUM
CVE-2025-32238
<= 4.5.2
Generation of Error Message Containing Sensitive Information vulnerability in vcita Online Booking & Scheduling Calendar for WordP
4.3MEDIUM
CVE-2024-54356
< 4.5.2
Cross-Site Request Forgery (CSRF) vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-sched
5.4MEDIUM
CVE-2024-9872
< 4.5.2
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modification of
5.4MEDIUM
CVE-2024-47638
< 4.5
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in vcita Online Booking & Sched
7.1HIGH
CVE-2024-37262
< 4.4.3
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in vCita.Com Online Book
7.1HIGH
CVE-2024-37499
< 4.4.3
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in vCita Online Booking & Scheduling
6.5MEDIUM
CVE-2024-5791
< 4.4.3
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting
7.2HIGH
CVE-2024-35761
< 4.4.1
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in vCita Online Booking
6.5MEDIUM
CVE-2024-5859
< 4.2.3
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Reflected Cross-Site Scripti
6.1MEDIUM
CVE-2023-39992
< 4.3.3
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in vCita.Com Online Booking & Scheduling Calendar for WordPress by vcit
7.1HIGH
CVE-2023-2414
<= 4.4.6
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modification of
5.4MEDIUM
CVE-2023-2416
<= 4.2.10
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Cross-Site Request Forgery d
5.4MEDIUM
CVE-2023-2415
<= 4.2.10
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modification of
5.4MEDIUM
CVE-2023-2299
<= 4.2.10
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized medication of d
5.3MEDIUM
CVE-2023-2298
<= 4.2.10
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting
7.2HIGH
threatengine.sh