Apache WSS4J: Unauthenticated denial of service via integer overflow in DER parsing of X.509 certificate extensions (CVE-2026-95616) | HOL Guard CVE