I appreciate your request, but the article text provided appears to be incomplete or corrupted - it contains only JavaScript configuration code and metadata without the actual advisory content about the Johnson Controls XAAP Android vulnerability. To write
Read the full article: https://www.cisa.gov/news-events/ics-advisories/icsa-26-204-02