Weblate has Systematic User and Project Enumeration via Broken Authorization in REST API (IDOR) (CVE-2025-67715) | HOL Guard CVE