There were talks in relation to the libxz debacle, that we shouldn’t abandon overloaded sole maintainers of the crucial libraries we depend on, right?

See https://github.com/libexpat/libexpat/blob/R_2_6_2/expat/Changes first lines of it. Holy sh..!

https://xkcd.com/2347/

libexpat/expat/Changes at R_2_6_2 · libexpat/libexpat

:herb: Fast streaming XML parser written in C99 with >90% test coverage; moved from SourceForge to GitHub - libexpat/libexpat

GitHub
Oh, my! https://libexpat.github.io/doc/users/ yes, many of these projects are insignificant or obsolete, but what remains! If these got broken! Oh, sh*! #FLOSS #libexpat #SBOM #vulnerability #XML
Software using Expat · Expat XML parser

Expat XML parser