Description
WordPress Plugin Anti-Malware Security and Brute-Force Firewall is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Anti-Malware Security and Brute-Force Firewall version 4.18.63 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Caret Country Access Limit Cross-Site Scripting (1.0.1)
WordPress 5.3.x Multiple Vulnerabilities (5.3 - 5.3.2)
WordPress Plugin WP Photo Album Plus Cross-Site Scripting (5.4.17)
WordPress 4.1.x Multiple Vulnerabilities (4.1 - 4.1.22)
WordPress Plugin Stealth Login Page Unspecified Vulnerability (1.1.3)