cve/2025/CVE-2025-45960.md
2025-09-29 21:09:30 +02:00

806 B

CVE-2025-45960

Description

Cross Site Scripting vulnerability in tawk.to Live Chat v.1.6.1 allows a remote attacker to execute arbitrary code via the web application stores and displays user-supplied input without proper input validation or encoding

POC

Reference

Github