XWiki Platform vulnerable to reflected cross-site scripting via delattachment action (CVE-2023-35157) | HOL Guard CVE