Genericons Example File is Unsafe

If you use Genericons in your plugin, please exclude the example.html (which is no longer included in the Genericons package itself).

The Genericons icon font package, which is used in a number of popular themes and plugins, contained an HTML file vulnerable to a cross-site scripting attack. All affected themes and plugins hosted on WordPress.org (including the Twenty Fifteen default theme) have been updated today by the WordPress security team to address this issue by removing this nonessential file. To help protect other Genericons usage, WordPress 4.2.2 proactively scans the wp-content directory for this HTML file and removes it. Reported by Robert Abela of Netsparker.

See the full release notes: https://wordpress.org/news/2015/05/wordpress-4-2-2/