Arbitrary file read+write on host via templates/ symlink in malicious image (CVE-2026-16033) | HOL Guard CVE