OpenClaw: shell-env trusted-prefix fallback allowed attacker-controlled binary execution via $SHELL (CVE-2026-22217) | HOL Guard CVE