WordPress Anti-Malware Security and Brute-Force Firewall plugin before 4.21.83 contains a cross-site scripting vulnerability. The plugin does not sanitize and escape some parameters before outputting them back in an admin dashboard.
id: CVE-2022-2599
info:
name: WordPress Anti-Malware Security and Brute-Force Firewall <4.21.83 -
...