Jenkins GitHub Integration Plugin has a cross-site request forgery (CSRF) vulnerability (CVE-2026-48925) | HOL Guard CVE