CVEs (19)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Vcita 1Online Booking & Scheduling Calendar Apr 27, 2026 Dec 9, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Missing Authorization vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affec...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 27, 2026 Dec 9, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 Cross-Site Request Forgery (CSRF) vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita allows Cross Site Request Forgery.This issue affects Online Booking & Schedu...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 23, 2026 Aug 20, 2025 N/A· v4 7.2 HIGH· v3 N/A· v2 Unrestricted Upload of File with Dangerous Type vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita allows Using Malicious Files.This issue affects Online Booking...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 23, 2026 Aug 14, 2025 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita allows Stored XSS.This is...Show more |
1Vcita 2Online Booking & Scheduling Calendar Online Booking & Scheduling Calendar For Wordpress By VcitaApr 23, 2026 Apr 4, 2025 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Generation of Error Message Containing Sensitive Information vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita allows Retrieve Embedded Sensitive Data.This issu...Show more |
1Vcita 2Online Booking & Scheduling Calendar Online Booking & Scheduling Calendar For Wordpress By VcitaApr 23, 2026 Dec 16, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Cross-Site Request Forgery (CSRF) vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita allows Cross Site Request Forgery.This issue affects Online Booking & Schedu...Show more |
1Vcita 2Online Booking & Scheduling Calendar Online Booking & Scheduling Calendar For Wordpress By VcitaFeb 20, 2026 Dec 6, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the vcita_save_user_data_callback() function in...Show more |
1Vcita 2Online Booking & Scheduling Calendar Online Booking & Scheduling Calendar For Wordpress By VcitaApr 23, 2026 Oct 5, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita allows Reflected XSS.This...Show more |
1Vcita 1Online Booking & Scheduling Calendar Jun 10, 2025 Jul 22, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in vCita.Com Online Booking & Scheduling Calendar for WordPress by vcita allows Reflected XSS.This issue affects O...Show more |
1Vcita 1Online Booking & Scheduling Calendar Jun 9, 2025 Jul 9, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in vCita Online Booking & Scheduling Calendar for WordPress by vcita allows Path Traversal.This issue affects Online Booking &...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 8, 2026 Jun 22, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'wp_id' parameter in all versions up to, and including, 4.4.2 due to missing autho...Show more |
1Vcita 2Online Booking & Scheduling Calendar Online Booking & Scheduling Calendar For Wordpress By VcitaFeb 20, 2026 Jun 21, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in vCita Online Booking & Scheduling Calendar for WordPress by vcita allows Stored XSS.This issue affects Online B...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 8, 2026 Jun 21, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘d’ parameter in all versions up to, and including, 4.4.2 due to insufficient i...Show more |
1Vcita 1Online Booking & Scheduling Calendar Jun 10, 2025 Sep 4, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in vCita.Com Online Booking & Scheduling Calendar for WordPress by vcita plugin <= 4.3.2 versions. |
1Vcita 1Online Booking & Scheduling Calendar Apr 8, 2026 Jun 9, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the vcita_save_settings_callback function in ve...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 8, 2026 Jun 3, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Cross-Site Request Forgery due to a missing nonce check on the vcita_logout_callback function in versions up to, and i...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 8, 2026 Jun 3, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the vcita_logout_callback function in versions...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 8, 2026 Jun 3, 2023 N/A· v4 5.3 MEDIUM· v3 N/A· v2 The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized medication of data via the /wp-json/vcita-wordpress/v1/actions/auth REST-API endpoint in versions up to,...Show more |
1Vcita 1Online Booking & Scheduling Calendar Apr 8, 2026 Jun 3, 2023 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'business_id' parameter in versions up to, and including, 4.3.0 due to insufficien...Show more |