Incorrect Permission Assignment for Critical Resource through the REST API in Splunk Enterprise (CVE-2026-76260) | HOL Guard CVE