WeGIA < 3.9.2 Insecure Direct Object Reference via profile_funcionario.php (CVE-2026-76634) | HOL Guard CVE