CVE-2024-13702 | vcita CRM and Lead Management Plugin up to 2.7.4 on WordPress Shortcode vCitaMeetingScheduler/vCitaSchedulingCalendar cross site scripting
A vulnerability was found in vcita CRM and Lead Management Plugin up to 2.7.4 on WordPress and classified as problematic. This issue affects the function vCitaMeetingScheduler/vCitaSchedulingCalendar of the component Shortcode Handler. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-13702. The attack may be initiated remotely. There is no exploit available.