(October 6, 2022, 05:53 PM)mrx325 Wrote: this one still vulnerable to CVE-2022-39197
Yes. BTW, uCare released a properly cracked version of this that doesn't expire and has dark mode at t.me/pwn3rzs. Either myself or someone who has time will add the xss patch soon. There are at least two patches floating around - one replaces dangerous characters with underscores, the other just nullifies the routine that interprets as html (javax/swing/plaf/basic/BasicHTML)