This update fixes the vulnerabilities by no longer building with the vulnerable bundled libexpat version.
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2026-0173.json"