#libxml2
libxml2 Narrowly Avoids Becoming Unmaintained
libxml2 Narrowly Avoids Becoming Unmaintained
Hackaday Article
hackaday.com
December 23, 2025 at 12:10 PM
Seriously, I was sure that libxml2 was maintained by someone at Redhat or something. Apparently it's used and deployed everywhere (from Apple to Microsoft, Google even) and they're not contributing and of course not even donating money.
socket.dev/blog/libxml2...
libxml2 Maintainer Ends Embargoed Vulnerability Reports, Cit...
Libxml2’s solo maintainer drops embargoed security fixes, highlighting the burden on unpaid volunteers who keep critical open source software secure.
socket.dev
June 21, 2025 at 8:02 AM
CVE-2024-56171 - libxml2
The libxml2 component used in several NetApp and Alpine Linux products can be made to fail, potentially disrupting services. This occurs when specially crafted XML data…

Too many irrelevant or confusing CVEs? Use stackflag.com

#libxml2 #netapp #RootAlpine315 #CVE #infosec
CVE-2024-56171: XML library can be tricked into crashing
The libxml2 component used in several NetApp and Alpine Linux products can be made to fail, potentially disrupting services.
stackflag.com
September 25, 2026 at 8:00 AM
> "【libxml2】libxml2プロジェクトは放棄されました - Qiita"
> qiita.com/rana_kualu/i...
【libxml2】libxml2プロジェクトは放棄されました - Qiita
先日libxml2のリポジトリに、楽しいテキストが追加されていました。 This is open-source software written by hobbyists, maintained by a single volunteer, badly tested, ...
qiita.com
November 19, 2025 at 8:34 AM
Переклав статтю про libxml2 на Вікіпедії
@ukwiki.bsky.social
Це назрівало вже давно.
xkcd.com/2347/
То як вам ситуація з libxml2?
December 16, 2025 at 9:55 PM
【libxml2】libxml2プロジェクトは放棄されました #Security - Qiita qiita.com/rana_kualu/i...
【libxml2】libxml2プロジェクトは放棄されました - Qiita
先日libxml2のリポジトリに、楽しいテキストが追加されていました。 This is open-source software written by hobbyists, maintained by a single volunteer, badly tested, ...
qiita.com
November 18, 2025 at 5:49 PM
December 26, 2024 at 3:51 PM
“Triaging security issues reported by third parties (#913) · Issue · GNOME/libxml2”

https://gitlab.gnome.org/GNOME/libxml2/-/issues/913

> The point is that libxml2 never had the quality to be used in mainstream browsers or operating systems to begin with... This should have never happened.
June 22, 2025 at 11:21 AM
-shm --enable-libxcb-xfixes --enable-libxevd --enable-libxeve --enable-xlib --enable-libxml2 --enable-libxvid --enable-libzimg --enable-zlib --enable-libzmq --enable-libzvbi --disable-debug --enable-optimizations --disable-extra-warnings --disable-stripping
April 30, 2026 at 1:44 AM
pure Go XML parsing is now as fast as libxml2 github.com/lestrrat-go/...
March 27, 2026 at 4:48 AM
No more embargoed security issues for libxml2: https://gitlab.gnome.org/GNOME/libxml2/-/issues/913
Triaging security issues reported by third parties (#913) · Issues · GNOME / libxml2 ·
Comments
gitlab.gnome.org
June 17, 2025 at 4:01 PM
Wine 11.10 is out with VKD3D 2.0, rewritten XPath support without libxml2, VBScript improvements, and 17 bug fixes.
linuxiac.com/wine-11-10-r...

#OpenSource
Wine 11.10 Released with Bundled VKD3D 2.0
Wine 11.10 is out with VKD3D 2.0, rewritten XPath support without libxml2, VBScript improvements, and 17 bug fixes.
linuxiac.com
May 29, 2026 at 8:57 PM
Libxml2 is now officially unmaintained after its long-time maintainer stepped down, leaving the widely used XML library without active development.
linuxiac.com/libxml2-beco...

#OpenSource #Linux
Libxml2 Becomes Officially Unmaintained After Maintainer Steps Down
Libxml2 is now officially unmaintained after its long-time maintainer stepped down, leaving the widely used XML library without active development.
linuxiac.com
December 9, 2025 at 7:44 PM
libxml2's sole maintainer Nick Wellnhofer steps down, meaning libxml2 is now no longer maintained.

https://discourse.gnome.org/t/stepping-down-as-libxml2-maintainer/31398

It's hard to estimate just how many companies depend on this software and critical security updates to the library, so I'm […]
Original post on mstdn.social
mstdn.social
September 25, 2025 at 3:20 PM
The solo maintainer for libxml2 is no longer accepting embargoed vulnerability reports, citing the unsustainable burden as an unpaid volunteer. Security issues will be treated like any other bug report moving forward.

socket.dev/blog/libxml2... #opensource #cybersecurity
libxml2 Maintainer Ends Embargoed Vulnerability Reports, Cit...
Libxml2’s solo maintainer drops embargoed security fixes, highlighting the burden on unpaid volunteers who keep critical open source software secure.
socket.dev
June 18, 2025 at 1:20 AM
とりあえず Claude Codeの週間利用可能トークン100% ぎりぎりまでねばって一通り libxml2 の Goポートができました。

github.com/lestrrat-go/...
GitHub - lestrrat-go/helium: Go port of libxml2
Go port of libxml2. Contribute to lestrrat-go/helium development by creating an account on GitHub.
github.com
March 3, 2026 at 12:56 AM
The big boys are all passing engineering costs on to this one guy. And never compensating him for it
June 21, 2025 at 9:57 AM
Só pra vocês terem uma ideia: um dos formatos de streaming mais usados no mundo é o DASH, que usa XML. E quase todos os programas que lidam com DASH usam libxml2
libxml2's sole maintainer Nick Wellnhofer steps down, meaning libxml2 is now no longer maintained.

https://discourse.gnome.org/t/stepping-down-as-libxml2-maintainer/31398

It's hard to estimate just how many companies depend on this software and critical security updates to the library, so I'm […]
Original post on mstdn.social
mstdn.social
September 29, 2025 at 7:55 PM
lol he hid the other comment too where i said hey maybe google the multi-trillion-dollar company should perhaps pay the libxml2 maintainer to fix the bugs in the implementation they use in their flagship browser for free
August 15, 2025 at 12:59 AM
Rubyists! Nokogiri v1.17.0 has been unleashed.

This is primarily a stability/bugfix release improving SAX parsers, fragment parsing, error handling, schema validation, and more!

github.com/sparklemotio...

#ruby #xml #html5
Release v1.17.0 / 2024-12-08 · sparklemotion/nokogiri
v1.17.0 / 2024-12-08 Dependencies [CRuby] Vendored libxml2 is updated to v2.13.5. @flavorjones [CRuby] Vendored libxslt is updated to v1.1.42. @flavorjones [CRuby] Minimum supported version of lib...
github.com
December 8, 2024 at 8:48 PM