Apache Camel: Camel-Docling: Insufficient validation of custom CLI arguments enables argument injection and path traversal in DoclingProducer (CVE-2026-40047) | HOL Guard CVE