VulnSea

nl-portal has 5 CVEs on record. 3 were published in the last 90 days. The busiest recent month was September 2026 with 3. The median CVSS is 6.5 (medium). None have a confirmed exploitation report.

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
6.5
Publish → KEV
—
Last 90 days
3 prev 2

Products

  • nl-portal-backend-libraries 1
  • nl.nl-portal:app 1
  • nl.nl-portal:besluiten 1
  • nl.nl-portal:documenten-api 1
  • nl.nl-portal:form 1
5
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

nl-portal vulnerabilities

CVEs affecting nl-portal, newest first. Open any entry for full detail, references, and exploit status.

5 CVEsRSS

CVE-2026-49462Medium· 5.3
2w ago

NL Portal Backend Libraries provide backend components for Dutch government portals that interact with residents, customers, suppliers, and partner organizations

NL Portal Backend Libraries provide backend components for Dutch government portals that interact with residents, customers, suppliers, and partner organizations. In versions up to and including 3.0.0, deployments using the shipped defau…

▾ Sunlitnl-portal · nl.nl-portal:appEPSS 0.40%via NVD
CVE-2026-49463Medium· 6.5
2w ago

NL Portal: Missing per-user authorization on document and decision GraphQL queries in nl-portal-backend-libraries

NL Portal Backend Libraries provide backend components for Dutch government portals that interact with residents, customers, suppliers, and partner organizations. The `nl.nl-portal:documenten-api` package through version 3.0.0 and the `n…

▾ Sunlitnl-portal · nl.nl-portal:besluitenEPSS 0.34%via CVEORG
CVE-2026-49464High· 8.1
2w ago

NL Portal Backend Libraries provide backend components for Dutch government portals that interact with residents, customers, suppliers, and partner organizations

NL Portal Backend Libraries provide backend components for Dutch government portals that interact with residents, customers, suppliers, and partner organizations. The `nl.nl-portal:taak` package from version 1.5.0 through 3.0.0 fails to …

▾ Twilightnl-portal · nl-portal-backend-librariesEPSS 0.35%via NVD
CVE-2026-55414Medium· 5.3
3mo ago

NL Portal Backend Libraries: Unauthenticated form resolver forwards the privileged Objecten-API token to a caller-supplied URL (SSRF)

NL Portal Backend Libraries: Unauthenticated form resolver forwards the privileged Objecten-API token to a caller-supplied URL (SSRF)

▾ Sunlitnl-portal · nl.nl-portal:formvia GHSA
CVE-2026-54683Medium· 6.5
3mo ago

NL Portal Backend Libraries: Document contents remained downloadable by any logged-in user (incomplete fix of CVE-2026-49463)

NL Portal Backend Libraries: Document contents remained downloadable by any logged-in user (incomplete fix of CVE-2026-49463)

▾ Sunlitnl-portal · nl.nl-portal:documenten-apivia GHSA
nl-portal vulnerabilities (CVEs) · VulnSea