Path traversal in imported file_entries name allows arbitrary file write via URL-type entry download (CVE-2026-66881) | HOL Guard CVE