CVE-2025-40619
Bookgy does not provide for proper authorisation control in multiple areas of the application. This deficiency could allow a malicious actor, without authentication, to reach private areas and/or areas intended for other roles.
More information : https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-bookgy
