Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2025-28563 | Unrestricted Upload of File with Dangerous Type vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita allows Using Malicious Files. This issue affects Online Booking & Scheduling Calendar for WordPress by vcita: from n/a through 4.5.3. |
Solution
Update the WordPress Online Booking & Scheduling Calendar for WordPress by vcita plugin to the latest available version (at least 4.5.5).
Workaround
No workaround given by the vendor.
Thu, 21 Aug 2025 12:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Vcita
Vcita online Booking & Scheduling Calendar For Wordpress By Vcita Wordpress Wordpress wordpress |
|
Vendors & Products |
Vcita
Vcita online Booking & Scheduling Calendar For Wordpress By Vcita Wordpress Wordpress wordpress |
Wed, 20 Aug 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 20 Aug 2025 08:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Unrestricted Upload of File with Dangerous Type vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita allows Using Malicious Files. This issue affects Online Booking & Scheduling Calendar for WordPress by vcita: from n/a through 4.5.3. | |
Title | WordPress Online Booking & Scheduling Calendar for WordPress by vcita Plugin <= 4.5.3 - Arbitrary File Upload Vulnerability | |
Weaknesses | CWE-434 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-08-20T15:14:54.824Z
Reserved: 2025-07-28T10:55:49.520Z
Link: CVE-2025-54677

Updated: 2025-08-20T13:56:29.168Z

Status : Awaiting Analysis
Published: 2025-08-20T08:15:49.030
Modified: 2025-08-20T14:39:07.860
Link: CVE-2025-54677

No data.

Updated: 2025-08-21T12:31:13Z