Report
The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.5.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to extract sensitive user or configuration data.
Score:4.3
Severity:Medium
Version: 4.5.2
The plugin vendor has not patched this vulnerability at the moment.