vLLM has remote code execution vulnerability in the tool call parser for Qwen3-Coder (CVE-2025-9141) | HOL Guard CVE