OpenHarness remote project-context commands allow persistent prompt poisoning (CVE-2026-56696) | HOL Guard CVE