Data-science-pipelines-operator: dspo: cryptographically weak secret generation (math/rand) for db and s3 credentials (CVE-2026-18611) | HOL Guard CVE