Majestic Support <= 1.1.9 - Authenticated (Subscriber+) SQL Injection via 'val' Parameter (CVE-2026-13262) | HOL Guard CVE