Potential for deserialization of untrusted types in Spring Cloud Stream (CVE-2026-59306) | HOL Guard CVE