Sandbox escape due to use-after-free in the Preferences: Backend component (CVE-2026-100804) | HOL Guard CVE