Netty has a Vulnerable Default Configuration Which Leads to Denial of Service via Unbounded HTTP/3 Header Size (CVE-2026-44892) | HOL Guard CVE