This is not a vulnerability. The developer is aware of this and identified , the “Private” marked locations in your dataset can be located through their URL. We do not see this as a vulnerability..
Do you have any locations in your dataset marked as private?
Solution:
Simply do not mark locations as private in your data set.