MariaDB Connector/Node.js: Connector leaks the cleartext password to an MitM despite `ssl: true` (CVE-2026-55215) | HOL Guard CVE