Wazuh: Arbitrary File Deletion via Cluster Protocol – Incomplete Path Validation in end_receiving_file() (CVE-2026-46343) | HOL Guard CVE