e107 Second-Order Code Execution via eval()-Based Deserialization in e_array::unserialize() (CVE-2026-57859) | HOL Guard CVE