canto-saas-api: Authenticated API requests can be redirected via unencoded path variables (CVE-2026-55374) | HOL Guard CVE