XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in restore template (CVE-2023-35158) | HOL Guard CVE