These are all security issues fixed in the xmlgraphics-fop-2.10-1.1 package on the GA media of openSUSE Tumbleweed.
{ "binaries": [ { "xmlgraphics-fop": "2.10-1.1" } ] }