CVE-2025-40619: Bookgy
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
Bookgy does not provide for proper authorisation control in multiple areas of the application. This deficiency could allow a malicious actor, without authentication, to reach private areas and/or areas intended for other roles.
Affected products
- Bookgy Bookgy: affected versions not specified
Published 2025-04-29. Last modified 2026-06-17.