CVE-2026-72522: libexpat project libexpat: libexpat before 2.8.3 has an out-of-bounds read and resultant infinite loop because low surrogates are treated the same… | Rapid7 Vulnerability Database