LightRAG: Stored Cross-Site Scripting (XSS) in the LightRAG WebUI chat/answer renderer via ingested content (CVE-2026-86062) | HOL Guard CVE