MantisBT is Vulnerable to XSS leading to account takeover via updating a user's font family preference (CVE-2026-40596) | HOL Guard CVE