Synapse's unauthenticated writes to the media repository allow planting of problematic content (CVE-2024-37303) | HOL Guard CVE