Open WebUI: Any authenticated user can inject chats into another user's folder via chat completions (CVE-2026-87997) | HOL Guard CVE