Conda: Entry-point path traversal in noarch:python install (arbitrary file write) — canonical Python implementation (CVE-2026-53940) | HOL Guard CVE