Vikunja vulnerable to Improper Authorization and Authorization Bypass Through User-Controlled Key (CVE-2026-55065) | HOL Guard CVE