Streamable HTTP mode exposes LINE Desktop read/send tools without MCP authentication (CVE-2026-49357) | HOL Guard CVE