Description
WordPress Plugin NextMove Lite-Thank You Page for WooCommerce is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin NextMove Lite-Thank You Page for WooCommerce version 2.18.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.18.2 or latest
References
Related Vulnerabilities
SharePoint CVE-2022-30159 Vulnerability (CVE-2022-30159)
WordPress Plugin FCChat Widget 'Upload.php' Arbitrary File Upload (2.2.13.1)
WordPress Plugin tcS3 Cross-Site Scripting (2.1.1)
Oracle HTTP Server Other Vulnerability (CVE-2004-2115)
WordPress Plugin Advanced Custom Fields PRO PHP Object Injection (6.0.7)