CVE-2025-40645 | ViDay HTTP GET Request /api/reserva/web/clients phone information disclosure
A vulnerability was found in ViDay and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /api/reserva/web/clients of the component HTTP GET Request Handler. Executing manipulation of the argument phone can lead to information disclosure.
This vulnerability is tracked as CVE-2025-40645. The attack can be launched remotely. No exploit exists.