RabbitMQ: Stream-protocol frame length never validated against frame_max (CVE-2026-67225) | HOL Guard CVE