Limit Login Attempts WordPress plugin < 4.0.72 contains a stored cross-site scripting caused by unsanitized and unescaped settings, letting malicious administrators inject Javascript code, exploit requires administrator privileges.
id: CVE-2022-1029
info:
name: Limit Login Attempts - Stored Cross-Site Scripting
author: theama
...