CVE-2025-62362 - CVE House
Back to Database
Status published Medium CVE-2025-62362

Name and e-mail of employee that has done a publication is discoverable in gpp-burgerportaal

Vulnerability Description

gpp-burgerportaal is a Dutch government citizen portal application. In versions before 2.0.3, 3.0.2, and 4.0.1, the name and email address of employees who publish content are exposed in network responses and can be discovered by viewing the browser's developer tools network tab. This information disclosure may violate employee privacy expectations and could be used for targeted attacks or unwanted contact. This issue has been patched in versions 2.0.3, 3.0.2, and 4.0.1. No known workarounds exist.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-62362

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

GPP-burgerportaal
Vulnerable Versions:
< 2.0.3, >= 3.0.0-rc.0, < 3.0.2, >= 4.0.0-rc.0, < 4.0.1

Timeline

Official Publish: October 13th, 2025
Last Modified: October 14th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.