Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Bryan Hadaway Site Favicon allows Stored XSS.This issue affects Site Favicon: from n/a through 0.2.CreditsCronus (Patchstack Alliance)Referenceshttps://patchstack.com/database/vulnerability/site-favicon/wordpress-site-favicon-plugin-0-2-cross-site-scripting-xss-vulnerability?_s_id=cve