Sensitive COS `SecretKey` exposed in plaintext via configuration API due to missing type protection (CVE-2025-41118) | HOL Guard CVE