Input validation vulnerability in Online Booking & Scheduling Calendar for WordPress by vcita 4.4.6

The vcita plugin for WordPress, which allows users to book and schedule appointments online, has a security vulnerability known as Reflected Cross-Site Scripting. This means that the plugin does not properly filter and protect against malicious code being injected into web pages. As a result, attackers who are not logged in to the website can potentially insert harmful scripts into pages and trick users into clicking on them, causing them to perform unintended actions.

Detected in:

Online Booking & Scheduling Calendar for WordPress by vcita open vulnerable versions: >= * <= 4.4.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.