cleantalk
Vulnerabilities and Security Researches

OTP-less one tap Sign in, CVE-2025-32622

CVE, Research URL

CVE-2025-32622

Published on
Apr 17, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in OTP-less OTP-less one tap Sign in allows Reflected XSS. This issue affects OTP-less one tap Sign in: from n/a through 2.0.58.
Affected versions
max 2.0.59.
Status
vulnerable