Drupal Canvas - Moderately critical - Improper validation - SA-CONTRIB-2026-066 (CVE-2026-58588) | HOL Guard CVE