Vitest Browser: Exposed Browser Mode API Can Proxy CDP and Overwrite Config Files, Leading to RCE (CVE-2026-53633) | HOL Guard CVE