CVE-2025-54677 | vcita Online Booking & Scheduling Calendar Plugin up to 4.5.3 on WordPress unrestricted upload
A vulnerability was found in vcita Online Booking & Scheduling Calendar Plugin up to 4.5.3 on WordPress. It has been rated as critical. The impacted element is an unknown function. Performing manipulation results in unrestricted upload.
This vulnerability is identified as CVE-2025-54677. The attack can be initiated remotely. There is not any exploit available.