cleantalk
Vulnerabilities and Security Researches

Nextend Social Login and Register, CVE-2025-58031

CVE, Research URL

CVE-2025-58031

Published on
Sep 23, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nextendweb Nextend Facebook Connect nextend-facebook-connect allows Stored XSS.This issue affects Nextend Facebook Connect : from n/a through <= 3.1.19.
Affected versions
max 3.1.20.
Status
vulnerable