CVE-2025-40615 | Bookgy /api/api_ajustes.php TEXTO cross site scripting
A vulnerability marked as problematic has been reported in Bookgy. The impacted element is an unknown function of the file /api/api_ajustes.php. Performing manipulation of the argument TEXTO results in cross site scripting.
This vulnerability is known as CVE-2025-40615. Remote exploitation of the attack is possible. No exploit is available.