Incus has an arbitrary file write on its client due to trusted image hash (CVE-2026-48769) | HOL Guard CVE