All 2 CVE vulnerabilities found in NextMove Lite – Thank You Page for WooCommerce, with AI-generated Chinese analysis, references, and POCs.
Vendor: xlplugins
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-0703 | NextMove Lite - Thank You Page for WooCommerce <= 2.23.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'xlwcty_current_date' Shortcode CWE-79 | 6.4 | Medium | 2026-05-02 |
| CVE-2024-10860 | NextMove Lite – Thank You Page for WooCommerce <= 2.19.0 - Missing Authorization to Authenticated (Subscriber+) Deactivation Reason Submission CWE-862 | 4.3 | Medium | 2025-02-28 |
All 2 known CVE vulnerabilities affecting NextMove Lite – Thank You Page for WooCommerce with full Chinese analysis, references, and POCs where available.