libks has path traversal in kws HTTP parser via URI segment overflow (CVE-2026-49846) | HOL Guard CVE