External Control of File Name or Path and Server-Side Request Forgery (SSRF) in Kibana Google Gemini Connector (CVE-2026-0532) | HOL Guard CVE