OpenClaw is vulnerable to Path Traversal through path validation bypass (CVE-2026-32846) | HOL Guard CVE