OpenClaw < 2026.3.28 - Privilege Escalation via Missing Caller Scope Validation in Device Pair Approval (CVE-2026-33579) | HOL Guard CVE