NivoCart through 2.4.0 Destructive Configuration Write via the Password Reset Controller (CVE-2026-94105) | HOL Guard CVE