Botan has a certificate authentication bypass due to trust anchor confusion (CVE-2026-34580) | HOL Guard CVE