Acm-search-v2-api-rhel9: search-v2-api: cross-user bearer-token reuse via global federation-config cache (CVE-2026-71468) | HOL Guard CVE