Moderate severityNVD Advisory· Published Nov 7, 2025· Updated Dec 1, 2025
CVE-2025-52662
CVE-2025-52662
Description
A vulnerability in Nuxt DevTools has been fixed in version 2.6.4*. This issue may have allowed Nuxt auth token extraction via XSS under certain configurations. All users are encouraged to upgrade.
More details: https://vercel.com/changelog/cve-2025-52662-xss-on-nuxt-devtools
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
@nuxt/devtoolsnpm | < 2.6.4 | 2.6.4 |
Affected products
2- Range: 2.6.3
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.