`navigate` can leak into other domains

This issue has been tracked since 2021-06-18.

Using something like navigate("//google.com") the router will navigate to //google.com. (Pretty much any URL will work)

Is this intentional? If so, what's the recommended way to sanitize inputs?

