CVE-2026-34172: Giskard Agents have Server-side template injection via ChatWorkflow.chat() using non-sandboxed Jinja2 Environment — Zero Day Monitor