Note that the #Chrome team could trivially ship the polyfill itself and nobody would have even _cared_ about the change in the way #XSLT support was implemented in browser. This would have completely solved the “security” issue due to #Google leeching on a #FLOSS libraries without giving back. The fact that they haven't shows that the security issues in the libraries are just an excuse.
Any comment on this, @drott ?