CVE-2025-62362
Name and e-mail of employee that has done a publication is discoverable in gpp-burgerportaal
Severity Score
6.9
*CVSS v4
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
gpp-burgerportaal is a Dutch government citizen portal application. In versions before 2.0.3, 3.0.2, and 4.0.1, the name and email address of employees who publish content are exposed in network responses and can be discovered by viewing the browser's developer tools network tab. This information disclosure may violate employee privacy expectations and could be used for targeted attacks or unwanted contact. This issue has been patched in versions 2.0.3, 3.0.2, and 4.0.1. No known workarounds exist.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
System
Vulnerable | Subsequent
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2025-10-10 CVE Reserved
- 2025-10-13 CVE Published
- 2025-10-13 CVE Updated
- ---------- EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-359: Exposure of Private Personal Information to an Unauthorized Actor
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://github.com/GPP-Woo/GPP-burgerportaal/security/advisories/GHSA-pgg6-2865-2788 | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
GPP-Woo Search vendor "GPP-Woo" | GPP-burgerportaal Search vendor "GPP-Woo" for product "GPP-burgerportaal" | < 2.0.3 Search vendor "GPP-Woo" for product "GPP-burgerportaal" and version " < 2.0.3" | en |
Affected
| ||||||
GPP-Woo Search vendor "GPP-Woo" | GPP-burgerportaal Search vendor "GPP-Woo" for product "GPP-burgerportaal" | >= 3.0.0 < 3.0.2 Search vendor "GPP-Woo" for product "GPP-burgerportaal" and version " >= 3.0.0 < 3.0.2" | en |
Affected
| ||||||
GPP-Woo Search vendor "GPP-Woo" | GPP-burgerportaal Search vendor "GPP-Woo" for product "GPP-burgerportaal" | >= 4.0.0 < 4.0.1 Search vendor "GPP-Woo" for product "GPP-burgerportaal" and version " >= 4.0.0 < 4.0.1" | en |
Affected
|