PrettyLinks <= 3.6.20 - Authenticated (Administrator+) SQL Injection via 's' Parameter (CVE-2026-5062) | HOL Guard CVE