Regular expression injection via unescaped characters in LINQ query translation in MongoDB C# Driver (CVE-2026-88026) | HOL Guard CVE