CVE-2025-32238: WordPress Online Booking & Scheduling Calendar for WordPress by vcita plugin <= 4.5.5 - Sensitive Data Exposure vulnerability
Generation of Error Message Containing Sensitive Information vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita meeting-scheduler-by-vcita allows Retrieve Embedded Sensitive Data.This issue affects Online Booking & Scheduling Calendar for WordPress by vcita: from n/a through <= 4.5.5.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-32238?
CVE-2025-32238 is considered a high severity vulnerability due to the exposure of sensitive data.
How do I fix CVE-2025-32238?
To fix CVE-2025-32238, update the vcita Online Booking & Scheduling Calendar plugin to version 4.5.3 or later.
What type of vulnerability is CVE-2025-32238?
CVE-2025-32238 is classified as a generation of error message containing sensitive information vulnerability.
Which versions of vcita Online Booking & Scheduling Calendar are affected by CVE-2025-32238?
CVE-2025-32238 affects versions of vcita Online Booking & Scheduling Calendar for WordPress from n/a to 4.5.2.
What can attackers gain from exploiting CVE-2025-32238?
Attackers exploiting CVE-2025-32238 can retrieve embedded sensitive data exposed through error messages.