OpenClaw < 2026.3.24 - Arbitrary File Read via mediaUrl and fileUrl Parameters (CVE-2026-33581) | HOL Guard CVE