OpenClaw: Node Pairing Reconnect Command Escalation Bypasses operator.admin Scope Requirement (CVE-2026-42432) | HOL Guard CVE