Known vulnerabilities in Nextend Social Login and Register
One click registration & login plugin for Facebook, Google, X (formerly Twitter) and more. Quick setup and easy configuration.
7Reported vulnerabilities
9.8Highest CVSS score
3.1.26Latest version
200,000+Active installs
What to do now
Update Nextend Social Login and Register to 3.1.22 or later.
7 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2024-9893 | Critical | 0.7% | 0 to 3.1.14 (inclusive) 0 to 3.1.14 (inclusive) |
3.1.15 |
October 16, 2024 |
| CVE-2014-8800 | Medium | 3.8% | 1.5.0 and earlier | 1.5.1 |
December 5, 2014 |
| CVE-2015-4413 | Medium | 2.7% | Before 1.5.6 | 1.5.6 |
June 24, 2015 |
| WF-7b834a3c-6af0-48fd-aa13-985d226b546d | High | — | 1.5.8 and earlier | 1.5.9 |
March 15, 2016 |
| CVE-2025-58031 | Medium | 0.2% | 3.1.19 and earlier | 3.1.20 |
September 22, 2025 |
| CVE-2024-1775 | Medium | 0.4% | Before 3.1.13 | 3.1.13 |
March 2, 2024 |
| CVE-2025-13737 | Medium | 0.2% | 0 to 3.1.21 (inclusive) | 3.1.22 |
November 28, 2025 |