OpenReception: Unauthenticated POST /api/log accepts arbitrary content with CRLF injection and no size or rate limits (CVE-2026-48083) | HOL Guard CVE