RabbitMQ: Stream listener does not enforce configured frame-size limit during authentication, permitting unauth'd mem-exhaust DoS (CVE-2026-57220) | HOL Guard CVE