Pathling: Typed CRUD/search/batch providers can lead to server-wide PHI exfiltration and cross-resource mutation (CVE-2026-47663) | HOL Guard CVE