OpenZeppelin Contracts using MerkleProof multiproofs may allow proving arbitrary leaves for specific trees (CVE-2023-34459) | HOL Guard CVE