Unrated severityNVD Advisory· Published Jul 25, 2025· Updated Jul 25, 2025
CVE-2025-45960
CVE-2025-45960
Description
Cross Site Scripting vulnerability in tawk.to Live Chat v.1.6.1 allows a remote attacker to execute arbitrary code via the web application stores and displays user-supplied input without proper input validation or encoding
Affected products
2- tawk.to/Live Chatdescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- tawkto.commitre
News mentions
0No linked articles in our index yet.