patching file includes/vb5/template/runtime.php patching file core/vb/template/runtime.php patch_applied_cleanly=true both_runtime_unit_suites_passed=true eval_removed_from_both_runtimes=true http_tested=true benign_arithmetic_preserved=true parent_trigger_blocked=true alternate_trigger_blocked=true VERIFIED: strict arithmetic parsing blocks both CVE-2026-61511 request paths without breaking normal paging.