XWiki Platform vulnerable to reflected cross-site scripting via xredirect parameter in DeleteApplication page (CVE-2023-35161) | HOL Guard CVE