Craft CMS: Potential authenticated Remote Code Execution via referrer redirect (CVE-2026-55794) | HOL Guard CVE