ArcadeDB: Read-only users can mutate database schema (incomplete fix of CVE-2026-44221) (CVE-2026-54076) | HOL Guard CVE