Tawk
3 known vulnerabilities
Top Products
Cross Site Scripting vulnerability in tawk.to Live Chat v.1.6.1 allows a remote attacker to execute arbitrary code via t
TawkTo Widget Version <= 1.3.7 is vulnerable to Cross Site Scripting (XSS) due to processing user input in a way that al
The Tawk.To Live Chat WordPress plugin before 0.6.0 does not have capability and CSRF checks in the tawkto_setwidget and
Frequently Asked Questions
How many CVEs affect Tawk?
Tawk has 3 CVE records in our database, including 0 critical and 1 high severity vulnerabilities.
What are the most severe Tawk vulnerabilities?
Tawk has 0 critical severity (CVSS 9.0+) and 1 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Tawk vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Tawk products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Tawk Vulnerabilities
CyberStrike scans your infrastructure for Tawk vulnerabilities and provides real-time remediation guidance.
Get Started