OpenClaw: Fake package roots could influence memory-core artifact loading (CVE-2026-53813) | HOL Guard CVE