CVE-2025-45960

Publication date

2025-07-25 00:00:00

Family

mitre

State

PUBLISHED

Description

Cross Site Scripting vulnerability in tawk.to Live Chat v.1.6.1 allows a remote attacker to execute arbitrary code via the web application stores and displays user-supplied input without proper input validation or encoding