Apache Wicket: XSS in AjaxEditableLabel and its subclasses via IChoiceRenderer and defaultNullLabel (CVE-2026-75802) | HOL Guard CVE