MCP Atlassian: Arbitrary server-local file upload to Jira/Confluence attachments via unrestricted file_path parameters (CVE-2026-77247) | HOL Guard CVE