WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in NextMove Lite – Thank You Page for WooCommerce

The only plugin in WooCommerce that empowers you to build profit-pulling Thank You Pages with plug & play components.

8Reported vulnerabilities
6.5Highest CVSS score
2.24.0Latest version
10,000+Active installs

What to do now

Update NextMove Lite – Thank You Page for WooCommerce to 2.24.0 or later. 7 of these have a fixed version available. Updating resolves them.

Plugin last updated: March 14, 2026 / Tested up to WordPress: 6.9.7 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2024-25092 Medium 6.5 1.4% 2.17.0 and earlier 2.18.0 February 9, 2024
CVE-2026-0703 Medium 6.4 0.2% 0 to 2.23.0 (inclusive) 2.24.0 May 2, 2026
CVE-2025-62969 Medium 6.4 0.2% 2.23.0 and earlier 2.24.0 October 18, 2025
CVE-2025-52735 Medium 6.1 0.3% 2.21.0 and earlier July 28, 2025
CVE-2025-68048 Medium 5.3 0.3% 2.23.0 and earlier 2.24.0 January 27, 2026
CVE-2026-24599 Medium 5.3 0.3% 2.23.0 and earlier 2.24.0 January 15, 2026
CVE-2024-32104 Medium 4.3 0.7% 2.18.1 and earlier 2.18.2 April 11, 2024
CVE-2024-10860 Medium 4.3 0.3% 2.19.0 and earlier 2.20.0 February 27, 2025

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.