Apache CloudStack: Cross-Site Scripting (XSS) Vulnerability in Lock User Function in UI (CVE-2026-61399) | HOL Guard CVE