vcita Online Booking and Scheduling Calendar for WordPress Sensitive Data Exposure Vulnerability

Vulnerability

A vulnerability in the vcita Online Booking & Scheduling Calendar for WordPress, affecting versions through 4.5.2, allows for the retrieval of embedded sensitive data. This issue arises from the generation of error messages that inadvertently disclose private information not typically accessible to regular users.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information, which could be used to exploit other weaknesses within the system.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.2
impact
2.5
exploitability
5.4
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.