Sandbox escape due to use-after-free in the DOM: Navigation component (CVE-2026-84119) | HOL Guard CVE