[oss-security] "the security policy of libxml2 has been changed to disclose vulnerabilities before fixes are available"
https://www.openwall.com/lists/oss-security/2025/06/16/6CVE-2025-49794 CVE-2025-49795 CVE-2025-49796 CVE-2025-6021 CVE-2025-6170
CVE-2025-6021 looks like the most severe (integer overflow in xmlBuildQName())