CVE-2026-18408: Inclusion of Functionality from Untrusted Control Sphere | Rapid7 Vulnerability Database