Apache Roller: Reflected cross-site scripting in the frontpage directory parameter (CVE-2026-82382) | HOL Guard CVE