Apache XMLSchema: Denial of service through cyclic schema definitions in the schema walker (CVE-2026-102497) | HOL Guard CVE