CVE-2022-1265
The BulletProof Security WordPress plugin before 6.1 does not sanitize and escape some of its CAPTCHA settings, which could allow high-privileged users to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed
Date published : 2022-05-16
https://wpscan.com/vulnerability/9b66819d-8479-4c0b-b206-7f7ff769f758