Cross-Site Request Forgery (CSRF) vulnerability in SedLex FavIcon Switcher plugin <= 1.2.11 at WordPress allows plugin settings change.CreditsVulnerability discovered by Lana Codes (Patchstack Alliance)Referenceshttps://patchstack.com/database/vulnerability/favicon-switcher/wordpress-favicon-switcher-plugin-1-2-11-cross-site-request-forgery-csrf-vulnerabilityhttps://wordpress.org/plugins/favicon-switcher/