WordPress Activity Log plugin <= 2.13.1 - Cross Site Request Forgery (CSRF) vulnerability (CVE-2026-84759) | HOL Guard CVE