DynamicKit for Elementor < 1.0.3 - Unauthenticated Account Takeover via Password Reset Link Host Injection (CVE-2026-14596) | HOL Guard CVE