CVE-2026-89151: Forgejo: Forgejo before 16.0.4 allows use of restricted API tokens for unintended access to the "allow maintainer edit" feature. | Rapid7 Vulnerability Database