GPP Burgerportaal Employee Information Disclosure Vulnerability

Vulnerability

A vulnerability in GPP Burgerportaal, a Dutch government citizen portal application, allows for the unintentional exposure of employees' names and email addresses in network responses. This issue is present in versions prior to 2.0.3, 3.0.2, and 4.0.1. The exposed information can be accessed through the browser's developer tools, potentially violating privacy expectations and leading to targeted attacks or unwanted contact. The vulnerability has been patched in versions 2.0.3, 3.0.2, and 4.0.1.

Impact

The vulnerability could lead to unauthorized disclosure of employee names and email addresses, creating potential privacy violations and risks of targeted attacks or unwanted contact.

Remediation

Users are advised to upgrade to version 2.0.3, 3.0.2, or 4.0.1.

Added: Oct 13, 2025, 10:24 PM
Updated: Oct 13, 2025, 10:24 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
7.4
remediation
7.7
relevance
0.7
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.