Apache Answer: Missing authorization in revision audit reject allows authenticated users to reject pending revisions (CVE-2026-50749) | HOL Guard CVE