Trivy has a path traversal via a crafted vulnerability database or other downloaded artifacts (CVE-2026-55092) | HOL Guard CVE