Traccar: Authenticated Blind SQL Injection in DELETE /api/permissions (CVE-2026-52851) | HOL Guard CVE