Unauthenticated Cross Site Scripting (XSS) in BEAR <= 1.1.8 versions.
Update the WordPress BEAR Plugin to the latest available version (at least 1.1.9).