CVE-2026-39892: cryptography has a buffer overflow if non-contiguous buffers were passed to APIs — Zero Day Monitor