LiteLLM has an authentication bypass via OIDC userinfo cache key collision (CVE-2026-35030) | HOL Guard CVE