Persistent Login <= 3.1.0 - Authenticated (Subscriber+) SQL Injection via 'wppl_device_id' Cookie (CVE-2026-18752) | HOL Guard CVE