Capgo SSO Provider Authentication Bypass via PostgREST Direct Write (CVE-2026-88864) | HOL Guard CVE