OpenClaw < 2026.3.28 - Insufficient Scope Validation in node.pair.approve (CVE-2026-33577) | HOL Guard CVE