<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url><loc>https://junglewise.ai/threats/cve-2026-41390-openclaw-has-a-gateway-exec-allowlist-allow-always-bypass-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41387-openclaw-incomplete-host-env-sanitization-blocklist</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41361-openclaw-ssrf-guard-ipv6-special-use-range-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41299-openclaw-gateway-chat-send-acp-only-provenance-guard-could-be</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41344-openclaw-gateway-privilege-escalation-via-chat-send-verbose</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41332-openclaw-environment-variable-blocklist-bypass-allows-code</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41399-openclaw-gateway-websocket-denial-of-service-via-unbounded-pre</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41303-openclaw-discord-text-approve-bypasses-channels-discord</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41342-openclaw-cli-authentication-bypass-in-remote-onboarding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41395-openclaw-voice-call-plivo-v3-webhook-replay-key-uses-unsorted-url</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nuxt-og-image-server-side-request-forgery-in-endpoint-5395f83c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34453-siyuan-incorrect-authorization-in-bookmark-api-publish-service</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34452-anthropic-claude-sdk-for-python-sandbox-escape-in-async-memory</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34451-anthropic-claude-sdk-for-typescript-path-traversal-in-memory-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34450-anthropic-claude-sdk-for-python-insecure-file-permissions-in</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34449-siyuan-rce-via-permissive-cors-policy-and-snippet-injection</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34448-siyuan-stored-xss-and-rce-in-attribute-view-gallery-cover</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34443-freescout-ssrf-via-broken-cidr-check-in-checkipbymask</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34442-freescout-host-header-injection-in-absolute-url-generation</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34441-yhirose-cpp-httplib-http-request-smuggling-in-static-file-handler</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34406-aptrs-privilege-escalation-via-mass-assignment-in-edit-user</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34405-nuxt-og-image-reflected-xss-via-query-parameter-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34404-nuxt-og-image-denial-of-service-via-unbounded-image-dimensions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34401-microsoft-xml-notepad-xxe-injection-via-unsafe-dtd-processing</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34400-alerta-sql-injection-in-postgres-query-parser-via-search-api</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5213-d-link-nas-and-nvr-stack-buffer-overflow-in-account-mgr-cgi</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5212-d-link-nas-and-nvr-stack-overflow-in-webdav-mgr-cgi</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3470-sonicwall-email-security-database-corruption-via-improper-input</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3469-sonicwall-email-security-denial-of-service-via-improper-input</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3468-sonicwall-email-security-stored-xss</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34740-wwbn-avideo-stored-ssrf-in-epg-link-feature</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34739-wwbn-avideo-reflected-xss-in-user-location-plugin</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34738-wwbn-avideo-authorization-bypass-in-video-processing-pipeline</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34737-wwbn-avideo-unauthorized-subscription-cancellation-in-stripeypt</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34733-wwbn-avideo-unauthenticated-file-deletion-in-deletesystemdprivate</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34732-wwbn-avideo-missing-authentication-in-createplugin-list-json-php</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34731-wwbn-avideo-missing-authentication-in-live-plugin-stream</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34716-wwbn-avideo-dom-xss-in-yptsocket-call-notifications</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34613-wwbn-avideo-csrf-in-pluginswitch-json-php</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34611-wwbn-avideo-csrf-in-emailallusers-json-php</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34586-mrmn2-pdfding-incorrect-authorization-in-shared-pdf-access</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34396-wwbn-avideo-stored-xss-in-admin-plugin-configuration</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34395-wwbn-avideo-missing-authorization-in-yptwallet-users-endpoint</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34394-wwbn-avideo-csrf-in-admin-plugin-configuration</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34384-admidio-csrf-in-registration-approval-actions</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34383-admidio-csrf-and-validation-bypass-in-inventory-module</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34382-admidio-csrf-in-mylist-function-php-list-deletion</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34381-admidio-improper-access-control-in-docker-image-document-storage</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34372-sulu-cms-authentication-bypass-in-contact-sub-entities-api</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34367-invoiceshelf-ssrf-in-invoice-pdf-generation-module</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34366-invoiceshelf-ssrf-in-payment-receipt-pdf-generation</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1579-px4-autopilot-missing-authentication-in-mavlink-protocol</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5211-d-link-multiple-nas-devices-stack-overflow-in-app-mgr-cgi</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4800-lodash-code-injection-in-template-imports</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34784-parse-platform-parse-server-authorization-bypass-via-http-range</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34365-invoiceshelf-ssrf-in-estimate-pdf-generation-module</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34215-parse-platform-parse-server-sensitive-information-exposure-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34206-libops-captcha-protect-reflected-xss-in-challenge-page</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34204-minio-metadata-injection-in-extractmetadatafrommime</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34203-nautobot-weak-password-requirement-in-rest-api</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30290-intouchapp-intouch-contacts-path-traversal-in</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30285-zora-labs-zora-app-path-traversal-in-file-import-process</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30280-rareprob-video-player-arbitrary-file-overwrite-in-mainactivity</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2950-lodash-prototype-pollution-in-unset-and-omit-functions</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5210-sourcecodester-leave-application-system-local-file-inclusion-in</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5209-sourcecodester-leave-application-system-xss-in-user-management</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3356-anritsu-remote-spectrum-monitor-missing-authentication-in</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30521-sourcecodester-loan-management-system-business-logic-flaw-in-plan</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5206-code-projects-simple-gym-management-system-sql-injection-in</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5190-aws-aws-c-event-stream-out-of-bounds-write-in-streaming-decoder</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33415-discourse-improper-access-control-in-sentiment-analytics-endpoint</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33300-discourse-authorization-bypass-in-category-chatables-controller</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33185-discourse-ssrf-in-group-email-settings-test-endpoint</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33074-discourse-improper-authorization-in-discourse-subscriptions</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33073-discourse-discourse-subscriptions-api-key-leakage-in-multisite</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32951-discourse-information-disclosure-in-oneboxer-shared-drafts</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32726-scitokens-scitokens-cpp-authorization-bypass-in-path-based-scope</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32725-scitokens-scitokens-cpp-authorization-bypass-via-path-traversal</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32620-discourse-information-disclosure-in-postreaderscontroller</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32619-discourse-improper-authorization-for-polls-in-private-topics</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32618-discourse-information-disclosure-in-chat-user-search</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32615-discourse-improper-authorization-for-category-group-moderators</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32607-discourse-stored-xss-in-assignment-related-ui-paths</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32273-discourse-stored-xss-in-category-description-update-api</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32243-discourse-stored-xss-in-ai-shared-conversation-titles</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32143-discourse-authorization-bypass-in-csv-report-export</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32113-discourse-open-redirect-in-staticcontroller-via-sso-destination</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30520-sourcecodester-loan-management-system-blind-sql-injection-in-ajax</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30286-funambol-zefiro-cloud-arbitrary-file-overwrite-in</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30283-peaksel-animal-sounds-and-ringtones-arbitrary-file-overwrite</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30282-uxgroup-llc-cast-to-tv-screen-mirroring-path-traversal-in-file</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30279-squareapps-my-location-travel-timeline-path-traversal-in-file</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30278-funair-fly-is-fun-aviation-navigation-arbitrary-file-overwrite</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30277-ta-triumph-adler-utax-mobile-print-path-traversal-file-overwrite</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2123-opentext-operations-agent-privilege-escalation-on-windows</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-62184-pegasystems-pega-platform-stored-xss-in-prediction-studio</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5205-chatwoot-ssrf-in-webhook-api</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34361-hapi-fhir-ssrf-and-credential-leak-in-fhir-validator</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34360-hapi-fhir-ssrf-in-fhir-validator-loadig-endpoint</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34359-hapi-fhir-credential-leakage-via-improper-url-prefix-matching</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24165-nvidia-bionemo-deserialization-of-untrusted-data</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24164-nvidia-bionemo-deserialization-of-untrusted-data</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24154-nvidia-jetson-linux-command-injection-in-initrd</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24153-nvidia-jetson-linux-information-disclosure-in-initrd</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24148-nvidia-jetson-insecure-default-initialization-in-system-logic</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5204-tenda-ch22-stack-buffer-overflow-in-formwebtypelibrary</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5203-cms-made-simple-path-traversal-in-userguide-module-xml-import</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5087-jjnapiork-pagi-middleware-session-store-cookie-weak-prng-in-iv</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4819-floragunn-search-guard-flx-credential-leakage-in-audit-logs</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4818-floragunn-search-guard-flx-improper-authorization-in-data-stream</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34595-parse-community-parse-server-type-confusion-in-livequery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34574-parse-platform-parse-server-session-immutability-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34573-parse-community-parse-server-dos-in-graphql-complexity-validator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34243-njzjz-wenxian-command-injection-in-github-actions-workflow</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34240-appsup-dart-jose-token-forgery-via-untrusted-jwk-header</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34237-model-context-protocol-java-sdk-hardcoded-wildcard-cors-policy</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34235-pjsip-heap-out-of-bounds-read-in-vp9-rtp-unpacketizer</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34231-mixxorz-slippers-xss-in-attrs-template-tag</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34227-bishopfox-sliver-unauthenticated-remote-access-in-mcp-interface</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34221-mikroorm-prototype-pollution-in-utils-merge</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34220-mikroorm-sql-injection-via-crafted-objects-in-query-apis</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34219-libp2p-rust-libp2p-denial-of-service-in-gossipsub-heartbeat</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34218-craigjbass-clearancekit-improper-privilege-management-in-opfilter</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30284-uxgroup-llc-voice-recorder-path-traversal-in</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30281-marunuri-llc-neo-maru-arbitrary-file-overwrite-in</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30276-deftpdf-document-translator-arbitrary-file-overwrite-in</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22569-zscaler-client-connector-inspection-bypass-on-windows</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22561-anthropic-claude-for-windows-privilege-escalation-in-installer</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-device-pairing-privilege-escalation-via-missing-scope-cdfe6171</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-incomplete-websocket-session-termination-on-device-removal-and-3ff925b1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-nextcloud-talk-webhook-missing-rate-limiting-20a584e7</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-path-traversal-via-mediaurl-and-fileurl-parameters-efa5ea85</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-ssrf-in-fal-provider-image-generation-1733ffa5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4799-floragunn-search-guard-flx-open-redirect-in-kibana-plugin</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34532-parse-community-parse-server-auth-bypass-in-cloud-functions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34504-openclaw-ssrf-in-fal-image-generation-provider-ts</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34503-openclaw-insufficient-session-expiration-in-websocket-gateway</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34377-zcashfoundation-zebra-consensus-split-via-invalid-v5</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34373-parse-platform-parse-server-origin-validation-bypass-in-graphql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34363-parse-server-data-leak-via-shared-mutable-state-in-livequery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34224-parse-platform-parse-server-mfa-bypass-via-race-condition-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34214-trino-credential-exposure-in-iceberg-connector-rest-catalog</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34210-wevm-mppx-credential-replay-in-stripe-charge-payment-method</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34209-wevm-mppx-improper-validation-in-tempo-session-close-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34202-zcashfoundation-zebra-remote-denial-of-service-via-crafted-v5</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34200-nhost-cli-missing-authentication-in-mcp-server-network-binding</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34172-giskard-giskard-agents-remote-code-execution-in-chatworkflow-chat</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34165-go-git-denial-of-service-via-crafted-idx-file</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34163-labring-fastgpt-ssrf-in-mcp-tools-endpoints</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34162-labring-fastgpt-unauthenticated-ssrf-in-http-tools-endpoint</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33762-go-git-out-of-bounds-read-in-git-index-v4-decoder</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33581-openclaw-sandbox-bypass-in-message-tool-alias-parameters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33580-openclaw-missing-rate-limiting-in-nextcloud-talk-webhook</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33579-openclaw-privilege-escalation-in-device-pairing-approval</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33578-openclaw-sender-policy-bypass-in-google-chat-and-zalouser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33577-openclaw-incorrect-authorization-in-node-pairing-approval</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33576-openclaw-incorrect-authorization-in-zalo-channel-media-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33276-checkmk-stored-xss-in-unified-search-via-host-or-service-names</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30314-ridvay-code-auto-approval-module-os-command-injection</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30312-dsai-cline-os-command-injection-in-command-auto-approval-module</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30311-ridvay-code-os-command-injection-in-command-auto-approval-module</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30309-tokfinity-infcode-os-command-injection-in-terminal-auto-execution</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29870-agentic-context-engine-directory-traversal-in-offlineace-run</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20915-checkmk-stored-xss-in-pending-changes-sidebar</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0596-mlflow-command-injection-in-model-serving-via-model-uri</loc><lastmod>2026-07-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3308-artifex-mupdf-integer-overflow-in-pdf-load-image-imp</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34156-nocobase-sandbox-escape-and-rce-in-workflow-script-node</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34155-pengutronix-rauc-signature-bypass-in-plain-bundles</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30310-sixth-prompt-injection-and-command-execution-in-terminal-auto</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34508-openclaw-webhook-rate-limiting-bypass-via-pre-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-ms-teams-sender-allowlist-bypass-in-plugin-45dca344</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-sandbox-boundary-bypass-in-writefile-commit-0cea3db3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-zalo-webhook-rate-limiting-bypass-6828898d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-credential-fallback-in-local-authentication-447c458f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-node-host-approval-ui-mismatch-vulnerability-d3b6d43d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-plugin-subagent-authorization-bypass-2cd62dbb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-system-run-approval-bypass-via-mutable-script-operands-2f934aeb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-workspace-plugin-auto-discovery-code-execution-4f1e1e26</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5198-code-projects-student-membership-system-sql-injection-in-admin</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4267-johnbillion-query-monitor-reflected-xss-in-request-uri</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3191-teckel-minify-html-csrf-in-minify-html-menu-options</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3139-cozmoslabs-user-profile-builder-idor-in-wppb-save-avatar-value</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34506-openclaw-microsoft-teams-plugin-sender-allowlist-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34505-openclaw-rate-limiting-bypass-in-zalo-webhook-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32988-openclaw-sandbox-boundary-bypass-in-fs-bridge-staged-writes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32982-openclaw-information-disclosure-in-fetchremotemedia-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32977-openclaw-sandbox-boundary-bypass-in-fs-bridge-writefile</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32976-openclaw-authorization-bypass-in-channel-commands</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32971-openclaw-ui-misrepresentation-in-node-host-system-run-approvals</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32970-openclaw-credential-fallback-bypass-in-local-auth-secretrefs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32921-openclaw-approval-bypass-in-system-run</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32920-openclaw-arbitrary-code-execution-via-untrusted-plugin-auto</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32917-openclaw-remote-command-injection-in-imessage-attachment-staging</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32916-openclaw-authorization-bypass-in-plugin-subagent-routes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27854-powerdns-dnsdist-use-after-free-in-dnsquestion-getednsoptions</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27853-powerdns-dnsdist-out-of-bounds-write-in-changename-lua-methods</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24030-powerdns-dnsdist-denial-of-service-via-unbounded-memory</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24029-powerdns-dnsdist-acl-bypass-in-dns-over-https-frontend</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24028-powerdns-dnsdist-out-of-bounds-read-in-lua-dns-packet-parsing</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0397-powerdns-dnsdist-information-disclosure-via-cors-misconfiguration</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0396-powerdns-dnsdist-html-injection-in-web-dashboard</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-14213-cato-networks-socket-command-injection-in-web-interface</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-14031-yves-sereal-encoder-out-of-bounds-write-via-embedded-zstandard</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-14030-yves-sereal-decoder-out-of-bounds-write-via-embedded-zstandard</loc><lastmod>2026-07-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4317-umami-software-sql-injection-in-timezone-parameter</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5201-gnome-gdk-pixbuf-heap-buffer-overflow-in-jpeg-loader</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34881-openstack-glance-ssrf-in-image-import-functionality</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34070-langchain-langchain-core-path-traversal-in-prompt-loading</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34060-shopify-ruby-lsp-code-injection-via-workspace-branch-setting</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34040-moby-authz-plugin-authorization-bypass-via-oversized-request-body</loc><lastmod>2026-06-16</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33997-moby-privilege-validation-bypass-in-docker-plugin-install</loc><lastmod>2026-06-16</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33986-freerdp-heap-buffer-overflow-in-h-264-codec</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33984-freerdp-heap-buffer-overflow-in-clearcodec-resize-vbar-entry</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33983-freerdp-denial-of-service-in-progressive-decompress-tile-upgrade</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/kyverno-ssrf-via-unrestricted-cel-http-functions-d54eaa1c</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21717-a-flaw-in-v8-s-string-hashing-mechanism-causes-integer-like</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21716-node-js-filehandle-chmod-and-filehandle-chown-permission-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21715-node-js-permission-model-bypass-in-fs-realpathsync-native</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21714-node-js-http-2-memory-leak-in-window-update-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21713-a-flaw-in-node-js-hmac-verification-uses-a-non-constant-time</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21711-node-js-permission-model-bypass-in-unix-domain-socket-operations</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21710-node-js-denial-of-service-via-proto-header-in-req-headersdistinct</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34714-vim-code-execution-via-tabpanel-modeline-escape-and-sandbox</loc><lastmod>2026-06-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-allowlist-command-missing-operator-admin-scope-enforcement-737663dd</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4046-gnu-glibc-assertion-failure-in-iconv-character-conversion</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33949-tinacms-tinacms-graphql-path-traversal-in-file-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33641-glances-vulnerable-to-command-injection-via-dynamic-configuration</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33533-glances-vulnerable-to-cross-origin-system-information-disclosure</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33032-nginx-ui-s-unauthenticated-mcp-endpoint-allows-remote-nginx</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33026-0xjacky-nginx-ui-configuration-tampering-via-backup-restore</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27599-ci4-cms-erp-ci4ms-system-settings-mail-settings-full-platform</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29597-ddsn-interactive-cm3-acora-cms-improper-access-control-in-file</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21712-a-flaw-in-node-js-url-processing-causes-an-assertion-failure-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30082-ingenico-ingestate-server-stored-xss-in-software-package-list</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3321-on24-q-a-chat-authorization-bypass-in-console-survey-api</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28528-bluekitchen-btstack-out-of-bounds-read-in-avrcp-browsing-target</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28527-bluekitchen-btstack-out-of-bounds-read-in-avrcp-controller</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28526-bluekitchen-btstack-out-of-bounds-read-in-avrcp-controller</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4315-watchguard-fireware-os-csrf-in-webui</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4266-watchguard-fireware-os-insecure-deserialization-in-access-portal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5121-libarchive-integer-overflow-in-iso9660-zisofs-processing</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3945-tinyproxy-integer-overflow-in-http-chunked-transfer-encoding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15379-mlflow-command-injection-in-model-serving-container</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5119-gnome-libsoup-cleartext-cookie-disclosure-in-https-proxy-tunneling</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15036-mlflow-path-traversal-in-extract-archive-to-dir</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2370-gitlab-improper-authorization-in-jira-connect-integration</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3055-citrix-netscaler-out-of-bounds-read-in-saml-idp</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4946-national-security-agency-ghidra-arbitrary-code-execution-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35646-openclaw-synology-chat-rate-limit-bypass-in-webhook</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35645-openclaw-incorrect-privilege-assignment-in-deletesession</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35640-openclaw-uncontrolled-resource-consumption-in-feishu-webhook</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35629-openclaw-ssrf-in-multiple-channel-extensions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35617-openclaw-authorization-bypass-in-google-chat-integration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35636-openclaw-session-status-sessionid-resolution-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-insufficient-permissions-in-session-transcript-files-5caf3729</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-skills-install-download-path-traversal-via-tools-root-21d441c9</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-approval-bypass-via-unrecognized-script-runners-99b402b3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-approval-integrity-bypass-in-interpreter-and-runtime-commands-a2e2f04d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-feishu-webhook-authentication-bypass-via-weak-verification-a1751d75</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-session-sandbox-escape-in-session-status-tool-395c369b</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-telegram-webhook-resource-exhaustion-via-unauthenticated-fa05a95a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/opencc-out-of-bounds-read-in-utf-8-processing-3c05795f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/handlebars-js-prototype-method-access-control-gap-via-missing-f97c2407</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/handlebars-js-property-access-validation-bypass-in-container-lookup-25bcfec0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mppx-multiple-payment-bypass-and-griefing-vulnerabilities-0a27d3d4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3256-ktat-http-session-predictable-session-id-generation</loc><lastmod>2026-06-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-9497-microchip-time-provider-4100-hard-coded-credentials-in-software</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23399-linux-kernel-memory-leak-in-nf-tables-nft-dynset</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35628-openclaw-missing-rate-limiting-in-telegram-webhook-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35642-openclaw-bluebubbles-group-reactions-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35623-openclaw-bluebubbles-webhook-brute-force-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35625-openclaw-privilege-escalation-in-gateway-shared-auth-reconnect</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34512-openclaw-gateway-http-authorization-bypass-in-sessions-sessionkey</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4923-pillarjs-path-to-regexp-redos-via-multiple-wildcards</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34226-capricorn86-happy-dom-cookie-leakage-in-fetch-requests</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33943-capricorn86-happy-dom-code-injection-in-ecmascriptmodulecompiler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33941-handlebars-handlebars-js-code-injection-in-cli-precompiler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33940-handlebars-js-remote-code-execution-via-ast-type-confusion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33939-handlebars-js-denial-of-service-via-malformed-decorator-syntax</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27309-adobe-substance3d-stager-use-after-free</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34046-langflow-authorization-bypass-in-flow-management-api</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33938-handlebars-js-remote-code-execution-via-partial-block-ast</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33937-handlebars-js-remote-code-execution-via-ast-type-confusion-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33896-digital-bazaar-node-forge-certificate-validation-bypass-in</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33895-digital-bazaar-forge-signature-malleability-in-ed25519</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33894-digital-bazaar-node-forge-signature-forgery-in-rsassa-pkcs-1-v1-5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33891-digital-bazaar-node-forge-infinite-loop-in-biginteger-modinverse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33871-netty-denial-of-service-via-http-2-continuation-frame-flood</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33870-netty-request-smuggling-via-chunked-extension-quoted-string</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34076-clerk-backend-ssrf-in-clerkfrontendapiproxy-feature</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34073-pyca-cryptography-incomplete-dns-name-constraint-enforcement</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33989-mobile-next-mobile-mcp-path-traversal-in-screen-capture-tools</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34043-yahoo-serialize-javascript-cpu-exhaustion-dos-via-crafted-array</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30567-a-reflected-cross-site-scripting-xss-vulnerability-exists-in</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33994-locutus-prototype-pollution-in-parse-str</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33993-locutus-prototype-pollution-via-proto-injection-in-unserialize</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33979-ahmedadelfahim-express-xss-sanitizer-permissive-sanitization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34411-appsmith-missing-authentication-in-instance-management-api</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28369-red-hat-undertow-request-smuggling-via-malformed-http-headers</loc><lastmod>2026-06-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28368-red-hat-undertow-request-smuggling-via-inconsistent-header</loc><lastmod>2026-06-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28367-red-hat-undertow-request-smuggling-via-malformed-header</loc><lastmod>2026-06-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15381-mlflow-authorization-bypass-in-tracing-and-assessment-endpoints</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32984-wazuh-authd-heap-buffer-overflow-in-os-auth</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/postiz-has-multiple-ssrf-vectors-webhooks-rss-feed-url-loader-6bd08235</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/postiz-multiple-ssrf-vulnerabilities-in-webhooks-rss-feed-and-url-84850bf8</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/postiz-app-server-side-request-forgery-via-next-js-ed83b5d9</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29070-open-webui-unauthorized-deletion-of-knowledge-files</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5027-langflow-path-traversal-arbitrary-file-write-in-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5010-sanoma-clickedu-reflected-xss-in-user-php</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4984-the-twilio-integration-webhook-handler-accepts-any-post-request</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4980-inkscape-local-file-disclosure-in-xinclude-processing</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33758-openbao-reflected-xss-in-oidc-authentication-callback</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33757-openbao-session-fixation-via-oidc-direct-callback-mode</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33433-traefik-identity-spoofing-via-non-canonical-headerfield-in-auth</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30689-anjoy8-blog-core-improper-access-control-in-getinfobytoken-api</loc><lastmod>2026-07-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27880-grafana-denial-of-service-in-openfeature-evaluation-endpoint</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27877-grafana-information-disclosure-of-data-source-passwords-in-public</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27876-grafana-remote-code-execution-via-sql-expressions-and-enterprise</loc><lastmod>2026-06-27</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-69988-bs-producten-petcam-incorrect-access-control-in-local-mode-wi-fi</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61190-lyrasis-dspace-jspui-reflected-xss-in-search-filter</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32859-bytedance-deerflow-stored-xss-in-artifacts-api</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32695-traefik-router-rule-injection-in-kubernetes-providers</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3457-thales-sentinel-ldk-runtime-stored-xss-on-windows</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27858-open-xchange-dovecot-denial-of-service-in-managesieve</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27857-open-xchange-dovecot-denial-of-service-via-noop-command-memory</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27856-dovecot-doveadm-timing-oracle-vulnerability-in-credential</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24031-dovecot-sql-authentication-bypass-via-cleared-auth-username-chars</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-59032-open-xchange-dovecot-denial-of-service-in-managesieve</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4948-firewalld-incorrect-authorization-in-d-bus-setters</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33559-mika-openstreetmap-xss-in-wordpress-plugin</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22744-vmware-spring-ai-injection-in-redisfilterexpressionconverter</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22742-spring-ai-s-spring-ai-bedrock-converse-contains-a-server-side</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22738-in-spring-ai-a-spel-injection-vulnerability-exists-in</loc><lastmod>2026-05-13</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33728-datadog-dd-trace-java-unsafe-deserialization-in-rmi</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33701-opentelemetry-java-instrumentation-rce-via-unsafe-deserialization</loc><lastmod>2026-07-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28377-grafana-tempo-plaintext-s3-encryption-key-exposure-in-config</loc><lastmod>2026-07-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27893-vllm-remote-code-execution-via-hardcoded-remote-code-trust-in</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-53521-f5-big-ip-stack-based-buffer-overflow-in-apm</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34352-tigervnc-x0vncserver-incorrect-permissions-in-shared-memory-image</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33916-handlebars-js-prototype-pollution-in-resolvepartial-leads-to-xss</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/apollo-server-xs-search-bypass-via-browser-cors-bug-108494ad</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35632-openclaw-symlink-traversal-in-agents-create-and-agents-update</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35635-openclaw-synology-chat-authorization-bypass-via-webhook-path</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35639-openclaw-gateway-privilege-escalation-in-device-pair-approve</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35622-openclaw-google-chat-app-url-webhook-auth-accepted-non-deployment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35624-openclaw-nextcloud-talk-authorization-bypass-via-room-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21724-grafana-oss-authorization-bypass-in-provisioning-contact-points</loc><lastmod>2026-07-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35637-openclaw-incorrect-authorization-in-tlon-cite-expansion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35631-openclaw-missing-authorization-for-mutating-acp-chat-commands</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2100-p11-kit-null-dereference-in-c-derivekey-rpc-handling</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0968-libssh-heap-out-of-bounds-read-in-sftp-parse-longname</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0967-libssh-redos-in-match-pattern-function</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0966-libssh-denial-of-service-in-ssh-get-hexa-function</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0965-libssh-denial-of-service-via-arbitrary-file-access-in</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0964-libssh-scp-path-traversal-in-ssh-scp-pull-request</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35644-openclaw-credential-exposure-in-config-snapshots</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32286-jackc-pgproto3-denial-of-service-in-datarow-decode</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32285-buger-jsonparser-denial-of-service-via-negative-slice-index-panic</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32284-shamaton-msgpack-denial-of-service-via-truncated-fixext-data</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35638-openclaw-trusted-proxy-control-ui-privilege-escalation-without</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-s-trusted-proxy-control-ui-sessions-retain-privileged-scopes-44f49e31</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35626-openclaw-is-vulnerable-to-unauthenticated-resource-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35633-openclaw-unbounded-memory-allocation-in-remote-media-fetch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4926-path-to-regexp-denial-of-service-via-sequential-optional-groups</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30463-daylight-studio-fuelcms-sql-injection-in-login-controller</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30458-daylight-studio-fuelcms-password-reset-token-exfiltration-via</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30457-daylight-studio-fuelcms-code-injection-in-dwoo-parser</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26213-thingino-firmware-command-injection-in-wifi-captive-portal</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35627-openclaw-incorrect-authorization-in-nostr-inbound-dm-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35634-openclaw-authentication-bypass-in-gateway-canvas</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35618-openclaw-plivo-v2-replay-attack-in-voice-call-extension</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33864-convict-prototype-pollution-via-startswith-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33863-convict-prototype-pollution-in-load-and-loadfile</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33769-astro-remotepatterns-allowlist-bypass-via-unanchored-wildcard</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33768-astro-astrojs-vercel-path-override-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33873-langflow-authenticated-code-execution-in-agentic-assistant</loc><lastmod>2026-06-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33751-n8n-ldap-filter-injection-in-ldap-node</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33750-brace-expansion-infinite-loop-in-zero-step-sequences</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33749-n8n-cross-site-scripting-via-binary-data-inline-html-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33748-buildkit-git-url-subdir-component-can-cause-access-to-restricted</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33487-russellhaering-goxmldsig-signature-bypass-in-validatesignature</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32857-firecrawl-ssrf-protection-bypass-in-playwright-scraping-service</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3116-mattermost-plugins-resource-consumption-via-webhook-endpoint</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3109-mattermost-plugins-timestamp-validation-failure-in-zoom-webhook</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34071-stirling-pdf-stored-xss-in-eml-to-html-export</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32846-openclaw-path-traversal-in-media-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33732-srvx-middleware-bypass-via-absolute-uri-in-request-line</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33713-n8n-data-table-node-sql-injection-via-orderbycolumn</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33696-n8n-prototype-pollution-in-gsuiteadmin-node-parameters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29934-a-reflected-cross-site-scripting-xss-vulnerability-in-the-admin</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4887-gimp-heap-buffer-over-read-in-pcx-file-loader</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1961-foreman-command-injection-in-websocket-proxy</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4809-plank-laravel-mediable-arbitrary-file-upload-in-file-handling</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24068-vienna-symphonic-library-vienna-assistant-privilege-escalation-in</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23398-linux-kernel-null-pointer-dereference-in-icmp-tag-validation</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23397-linux-kernel-null-pointer-dereference-and-oob-read-in-nfnetlink</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4263-hijiffy-chatbot-incorrect-authorization-in-webchat-message-api</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4262-hijiffy-chatbot-incorrect-authorization-in-download-api</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4874-keycloak-ssrf-via-oidc-token-endpoint-manipulation</loc><lastmod>2026-07-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33744-bentoml-command-injection-in-bentofile-yaml-system-packages</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32680-ratoc-raid-monitoring-manager-privilege-escalation-via-insecure</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28760-ratoc-raid-monitoring-manager-dll-hijacking-in-installer</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15101-asus-router-firmware-os-command-injection-in-web-management</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33526-squid-heap-use-after-free-in-icp-request-handling</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32748-squid-heap-use-after-free-in-icp-request-handling</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33634-aqua-security-trivy-supply-chain-compromise-via-malicious-code</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33724-n8n-ssh-configuration-man-in-the-middle-in-source-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33722-n8n-external-secrets-authorization-bypass-in-credential-saving</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33720-n8n-authorization-bypass-in-oauth-callback</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33718-openhands-command-injection-in-git-diff-handler</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33672-micromatch-picomatch-method-injection-in-posix-character-classes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33671-picomatch-redos-vulnerability-via-extglob-quantifiers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33665-n8n-ldap-privilege-escalation-via-email-attribute-linking</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33663-n8n-community-edition-credential-theft-via-name-based-resolution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33660-n8n-remote-code-execution-in-merge-node-sql-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/smol-toml-stack-overflow-via-recursive-comment-parsing-8af08276</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-6409-google-protobuf-dos-via-negative-varints-or-deep-recursion-in-php</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33247-nats-server-sensitive-information-disclosure-in-monitoring</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33219-nats-server-denial-of-service-in-websockets-component</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33218-nats-server-denial-of-service-in-leafnode-handling</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33217-nats-server-acl-bypass-in-mqtt-namespace</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33216-nats-server-plaintext-password-disclosure-in-monitoring-endpoints</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29785-nats-io-nats-server-null-pointer-dereference-in-leafnode-protocol</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27889-nats-server-denial-of-service-via-websocket-frame-length-overflow</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33532-yaml-stack-overflow-via-deeply-nested-collections</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3635-fastify-request-protocol-and-request-host-spoofing-via-x-forwarded</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1001-domoticz-stored-xss-in-add-hardware-and-rename-device</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26831-textract-os-command-injection-via-malicious-filenames</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26833-thumbler-os-command-injection-in-thumbnail-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30587-multiple-stored-xss-vulnerabilities-exist-in-seafile-server</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67030-codehaus-plexus-plexus-utils-directory-traversal-in-expand</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33287-liquidjs-exponential-memory-amplification-in-replace-first-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33285-liquidjs-memorylimit-bypass-via-negative-range-values</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grackle-server-json-parse-missing-error-handling-in-grpc-adapter-config-931236d4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grackle-ai-server-missing-secure-flag-on-session-cookie-0da6f92b</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grackle-ai-server-missing-security-headers-in-http-responses-52400df5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grackle-powerline-missing-authentication-by-default-4ded3da4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grackle-ai-server-missing-websocket-origin-validation-d1ccc755</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grackle-ai-mcp-workspace-authorization-bypass-in-knowledge-search-tool-630c00ca</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34085-fontconfig-off-by-one-error-in-fcfontcapabilities</loc><lastmod>2026-05-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grackle-server-unescaped-error-string-in-html-template-646647e5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27496-n8n-memory-disclosure-in-task-runner</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26832-node-tesseract-ocr-os-command-injection-in-recognize-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20108-cisco-catalyst-sd-wan-manager-xss-in-web-management-interface</loc><lastmod>2026-06-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26830-pdf-image-os-command-injection-via-pdffilepath</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3591-isc-bind-9-stack-use-after-return-in-sig-0-handling</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3119-isc-bind-9-denial-of-service-via-tkey-record-in-authenticated</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3104-isc-bind-9-memory-leak-in-dnssec-proof-of-non-existence-code</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28529-cryptodev-linux-use-after-free-in-get-userbuf-function</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1519-isc-bind-9-denial-of-service-via-excessive-nsec3-iterations</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-51348-bs-producten-petcam-stack-overflow-in-p2p-api-service</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23394-linux-kernel-race-condition-in-af-unix-garbage-collection</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23392-linux-kernel-netfilter-use-after-free-in-nf-tables-flowtable</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23391-linux-kernel-netfilter-use-after-free-in-xt-ct-template-removal</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23389-linux-kernel-ice-driver-memory-leak-in-ice-set-ringparam</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23381-linux-kernel-null-pointer-dereference-in-net-bridge</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23379-linux-kernel-divide-by-zero-in-net-sched-ets-offload-path</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23378-linux-kernel-out-of-bounds-write-in-net-sched-act-ife</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23371-linux-kernel-deadline-scheduler-bandwidth-corruption-in-pi-de</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23370-linux-kernel-information-disclosure-in-dell-wmi-sysman</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23368-linux-kernel-deadlock-in-phy-led-trigger-registration</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23365-linux-kernel-denial-of-service-in-kalmia-usb-driver</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23364-linux-kernel-ksmbd-timing-attack-in-mac-comparison</loc><lastmod>2026-06-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23359-linux-kernel-stack-out-of-bounds-write-in-bpf-devmap</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23351-linux-kernel-use-after-free-in-netfilter-nft-set-pipapo</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23346-linux-kernel-arm64-kernel-fault-in-ioremap-prot</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23343-linux-kernel-out-of-bounds-write-in-xdp-tailroom-calculation</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23340-linux-kernel-use-after-free-in-net-scheduler-during-qdisc-reset</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23335-linux-kernel-stack-leak-in-irdma-create-user-ah</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23327-linux-kernel-out-of-bounds-read-in-cxl-mailbox-payload-handling</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23321-linux-kernel-mptcp-denial-of-service-in-path-manager-endpoint</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23319-linux-kernel-use-after-free-in-bpf-trampoline-link-cgroup-shim</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23313-linux-kernel-i40e-preempt-count-leak-in-napi-poll-tracepoint</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23312-linux-kernel-kaweth-driver-missing-usb-endpoint-validation</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23311-linux-kernel-improper-locking-in-perf-core-ctx-sched-in</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23310-linux-kernel-bonding-driver-state-inconsistency-in-xdp</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23309-linux-kernel-null-pointer-dereference-in-trigger-data-free</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23308-linux-kernel-equilibrium-pinctrl-improper-interrupt-handling</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23307-linux-kernel-buffer-overflow-in-ems-usb-driver</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23306-linux-kernel-pm8001-double-free-in-pm8001-queue-command</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23305-linux-kernel-rocket-accelerator-out-of-bounds-access-in-rocket</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23304-linux-kernel-null-pointer-dereference-in-ipv6-ip6-rt-get-dev-rcu</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23303-linux-kernel-plaintext-credential-disclosure-in-smb-client</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23302-linux-kernel-race-condition-in-networking-socket-pointers</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23301-linux-kernel-asoc-sdca-unchecked-return-value-in-find-sdca-entity</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23300-linux-kernel-null-pointer-dereference-in-ipv6-nexthop-routing</loc><lastmod>2026-05-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23299-linux-kernel-memory-leak-in-bluetooth-socket-destructors</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23298-linux-kernel-infinite-loop-in-ucan-driver</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23297-linux-kernel-memory-leak-in-nfsd-nfsd-nl-threads-set-doit</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23296-linux-kernel-reference-count-leak-in-scsi-core</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23295-linux-kernel-amdxdna-deadlock-in-suspend-and-resume</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23294-linux-kernel-race-condition-in-bpf-devmap-on-preempt-rt</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23293-linux-kernel-null-pointer-dereference-in-vxlan-with-ipv6-disabled</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23292-linux-kernel-recursive-locking-in-scsi-target-configfs</loc><lastmod>2026-05-27</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23291-linux-kernel-resource-leak-in-pn533-nfc-driver</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23290-linux-kernel-pegasus-usb-driver-denial-of-service</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23289-linux-kernel-resource-leak-in-ib-mthca-mthca-create-srq</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23288-linux-kernel-accel-amdxdna-out-of-bounds-write-in-command-slot</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23287-linux-kernel-denial-of-service-in-sifive-plic-irqchip</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23286-linux-kernel-null-pointer-dereference-in-atm-lec-module</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23285-linux-kernel-drbd-null-pointer-dereference-on-local-read-error</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23284-linux-kernel-mediatek-ethernet-driver-denial-of-service-in-mtk</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23283-linux-kernel-pm-runtime-reference-leak-in-fp9931-regulator</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23282-linux-kernel-uninitialized-variable-in-smb-client-smb2-unlink</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23281-linux-kernel-libertas-wi-fi-driver-use-after-free-in-lbs-free</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23280-linux-kernel-amdxdna-integer-overflow-in-ubuf-allocation</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23279-linux-kernel-null-pointer-dereference-in-mac80211-mesh-rx-csa</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3608-isc-kea-stack-overflow-in-multiple-daemons-via-api-socket</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28882-apple-os-installed-app-enumeration-in-icloud-and-crash-reporter</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28878-apple-multiple-os-privacy-issue-in-crash-reporter</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28877-apple-multiple-operating-systems-authorization-issue-in-accounts</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28870-apple-geoservices-information-leakage-in-multiple-operating</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28863-a-permissions-issue-was-addressed-with-additional-restrictions</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28861-apple-safari-and-os-logic-issue-in-script-message-handlers</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28859-apple-safari-and-os-sandbox-escape-via-improper-memory-handling</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28857-apple-safari-and-os-memory-corruption-in-webkit-content</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28838-a-permissions-issue-was-addressed-with-additional-sandbox</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28833-a-permissions-issue-was-addressed-with-additional-restrictions</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28826-apple-macos-sandbox-escape-in-coreservices</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20684-a-permissions-issue-was-addressed-with-additional-restrictions</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20664-apple-and-red-hat-memory-corruption-in-web-content-processing</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20657-apple-multiple-operating-systems-buffer-overflow-via-file-parsing</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-denial-of-service-via-unbounded-resource-consumption-85fd7c72</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-denial-of-service-via-unbounded-cumulative-template-output-fd511cae</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-uncontrolled-recursion-in-object-to-json-7e1ae03a</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-uncontrolled-memory-allocation-in-string-padding-functions-782642d8</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-uncontrolled-resource-consumption-via-looplimit-bypass-2de84d82</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-sandbox-escape-via-stale-memberfilter-cache-in-templatecontext-9eac7f21</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-information-disclosure-via-stale-include-cache-in-7f78542b</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-uncontrolled-recursion-in-nested-array-initializers-f249a416</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4371-mozilla-thunderbird-out-of-bounds-read-in-imap-parsing</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33627-parse-server-information-disclosure-in-users-me-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33412-vim-command-injection-in-glob-function-via-newline-character</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33331-middleapi-orpc-stored-xss-in-openapi-documentation-generator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33624-parse-server-mfa-recovery-code-single-use-bypass-via-race</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29772-astro-astrojs-node-memory-exhaustion-dos-in-server-islands</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1995-idrive-cloud-backup-client-local-privilege-escalation-in-id</loc><lastmod>2026-07-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33539-parse-server-sql-injection-in-postgresql-adapter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33538-parse-server-denial-of-service-via-unindexed-database-query</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/fido2-lib-denial-of-service-via-cbor-extract-heap-buffer-over-read-7b864968</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32854-libvncserver-null-pointer-dereference-in-http-proxy-handlers</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32853-libvnc-libvncserver-heap-out-of-bounds-read-in-ultrazip-handler</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33527-parse-server-session-field-overwriting-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4775-libtiff-signed-integer-overflow-in-putcontig8bitycbcr44tile</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33554-gnu-freeipmi-buffer-overflows-in-ipmi-oem-response-parsing</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32647-nginx-open-source-and-plus-buffer-overflow-in-ngx-http-mp4-module</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27784-nginx-open-source-memory-corruption-in-ngx-http-mp4-module</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27654-nginx-buffer-overflow-in-ngx-http-dav-module</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27651-nginx-null-pointer-dereference-in-ngx-mail-auth-http-module</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4729-mozilla-firefox-and-thunderbird-memory-safety-bugs</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4721-mozilla-firefox-and-thunderbird-multiple-memory-safety-bugs</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4720-mozilla-firefox-and-thunderbird-memory-safety-bugs</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4700-mozilla-firefox-and-thunderbird-mitigation-bypass-in-networking</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4699-mozilla-firefox-and-thunderbird-out-of-bounds-write-in-text-and</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4698-mozilla-firefox-and-thunderbird-jit-miscompilation-in-javascript</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4697-mozilla-firefox-and-thunderbird-out-of-bounds-write-in-web-codecs</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4696-mozilla-firefox-and-thunderbird-use-after-free-in-layout-text-and</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4695-mozilla-firefox-and-thunderbird-incorrect-boundary-conditions-in</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4694-mozilla-firefox-and-thunderbird-integer-overflow-in-graphics</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4693-mozilla-firefox-and-thunderbird-boundary-conditions-in-audio-video</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4692-mozilla-firefox-and-thunderbird-sandbox-escape-in-responsive</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4691-mozilla-firefox-and-thunderbird-use-after-free-in-css-parsing-and</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4690-mozilla-firefox-and-thunderbird-sandbox-escape-in-xpcom</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4689-mozilla-firefox-and-thunderbird-sandbox-escape-in-xpcom</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4688-mozilla-firefox-and-thunderbird-sandbox-escape-in-disability</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4687-mozilla-firefox-and-thunderbird-sandbox-escape-in-telemetry</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4686-mozilla-firefox-and-thunderbird-out-of-bounds-write-in-canvas2d</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4685-mozilla-firefox-and-thunderbird-out-of-bounds-write-in-canvas2d</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4684-mozilla-firefox-and-thunderbird-use-after-free-in-webrender</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-64998-checkmk-session-hijacking-via-session-signing-secret-exposure</loc><lastmod>2026-05-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2019-25634-4mhz-base64-decoder-stack-buffer-overflow-in-seh-handling</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32642-apache-activemq-artemis-incorrect-authorization-in-openwire</loc><lastmod>2026-06-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3260-red-hat-undertow-resource-exhaustion-in-http-request-parsing</loc><lastmod>2026-07-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33211-tekton-pipelines-path-traversal-in-git-resolver</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33195-ruby-on-rails-active-storage-path-traversal-in-diskservice</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33430-beeware-briefcase-privilege-escalation-in-windows-msi-installers</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33202-ruby-on-rails-active-storage-glob-injection-in-diskservice</loc><lastmod>2026-05-13</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4368-race-condition-in-netscaler-adc-and-netscaler-gateway-when</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33170-ruby-on-rails-active-support-xss-in-safebuffer</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26209-cbor2-denial-of-service-via-uncontrolled-recursion</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-52204-znuny-reflected-xss-in-customer-pl-otrscustomerinterface</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25075-strongswan-integer-underflow-in-eap-ttls-avp-parser</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32845-jkuhlmann-cgltf-integer-overflow-in-cgltf-validate</loc><lastmod>2026-07-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4647-gnu-binutils-bfd-library-out-of-bounds-read-in-xcoff-relocation</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-41008-sinturno-sql-injection-in-modalreport-data-php</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1958-bri-klinikaxp-hard-coded-credentials-in-update-server-access</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-41007-cuantis-sql-injection-in-search-php</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4633-keycloak-user-enumeration-in-identity-first-login-flow</loc><lastmod>2026-06-17</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31846-nexxt-solutions-nebula-300-missing-authentication-in-goform-ate</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28809-esaml-xxe-vulnerability-in-saml-message-parsing</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4628-keycloak-improper-access-control-in-uma-resource-set-endpoint</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4603-jsrsasign-division-by-zero-in-rsa-public-key-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4602-jsrsasign-incorrect-numeric-conversion-in-biginteger-modpow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4601-jsrsasign-private-key-recovery-via-missing-dsa-check-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4600-kjur-jsrsasign-signature-forgery-via-dsa-domain-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4599-jsrsasign-private-key-recovery-via-biased-dsa-nonce-generation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4598-jsrsasign-infinite-loop-in-biginteger-modinverse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4606-geovision-edge-recording-manager-privilege-escalation-to-system</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4115-putty-ed25519-signature-malleability-in-eddsa-verify</loc><lastmod>2026-05-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-acp-client-permission-auto-approval-bypass-via-untrusted-tool-0d2f8f74</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-bluebubbles-webhook-authentication-bypass-7aabbc88</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-gateway-auth-token-reuse-in-owner-id-prompt-hashing-63c9b34c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-slack-reaction-pin-sender-policy-bypass-in-event-ingress-7f08653e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-authentication-bypass-in-trusted-proxy-control-ui-pairing-8d170e35</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-capture-replay-bypass-in-twilio-webhook-deduplication-3354f08f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-node-system-run-approval-context-binding-weakness-00ef19a6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-sandbox-browser-novnc-observer-missing-authentication-b934c975</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-shell-startup-environment-injection-in-system-run-0d5d155c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-slack-system-events-sender-authorization-bypass-84b2b165</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-symlink-traversal-in-browser-trace-and-download-path-handling-8b2b3437</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-system-run-approval-identity-mismatch-0bc9e5e9</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-workspace-path-traversal-via-symlink-9bf07924</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-gateway-authentication-bypass-via-tailscale-header-spoofing-493c5b3e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-improper-sandbox-configuration-in-chromium-browser-3c78fe30</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-inbound-media-byte-limit-bypass-2534bf41</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-sandbox-bypass-in-cross-agent-sessions-spawn-4a805b76</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-signal-reaction-only-status-events-access-control-bypass-226b1312</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-system-run-shell-wrapper-command-injection-724d5790</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-toctou-in-system-run-via-mutable-symlink-cwd-target-f6f0f1f2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32896-openclaw-bluebubbles-authentication-bypass-in-webhook-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32067-openclaw-authorization-bypass-in-direct-message-pairing-store</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33243-barebox-fit-signature-verification-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33236-nltk-path-traversal-in-downloader-component</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33231-nltk-unauthenticated-remote-shutdown-in-wordnet-browser</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33228-webreflection-flatted-prototype-pollution-in-parse-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33221-nhost-storage-service-mime-type-spoofing-in-file-upload-handler</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33210-ruby-json-format-string-injection-in-json-parser</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33186-grpc-grpc-go-authorization-bypass-in-http-2-path-validation</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33180-hapi-fhir-sensitive-information-leak-via-http-redirects</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29796-igl-eparking-fi-missing-authentication-in-ocpp-websocket-endpoint</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23536-feast-feature-server-path-traversal-in-read-document-endpoint</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33508-parse-server-livequery-subscription-query-depth-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33150-libfuse-use-after-free-in-io-uring-subsystem</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33498-parse-server-query-condition-depth-bypass-in-transform-pipeline</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33497-langflow-path-traversal-in-profile-picture-endpoint</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33490-h3js-h3-incorrect-path-validation-in-mount-method</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33468-kysely-mysql-sql-injection-via-insufficient-backslash-escaping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33442-kysely-mysql-sql-injection-via-backslash-escape-bypass-in-json</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33484-langflow-unauthenticated-idor-in-image-download-endpoint</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33429-parse-server-protected-field-change-detection-oracle-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33421-parse-server-livequery-auth-bypass-in-pointer-permission</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33418-dicebear-converter-svg-dimension-capping-bypass-via-xml-comment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32887-effect-ts-effect-asynclocalstorage-context-contamination-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4438-gnu-glibc-improper-input-validation-in-gethostbyaddr</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4437-gnu-glibc-dns-specification-violation-in-gethostbyaddr</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-63260-syncfusion-essential-studio-stored-xss-in-document-editor-and</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33055-rust-tar-rs-archive-parsing-discrepancy-via-pax-size-header</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22895-qnap-quftp-service-cross-site-scripting</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15608-tp-link-archer-ax53-and-ax55-stack-overflow-in-tdpserver</loc><lastmod>2026-07-13</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67260-aster-tec-terrapack-unrestricted-file-upload-in-tkwebcoreng</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32701-builder-io-qwik-city-array-method-pollution-in-formdata-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-websocket-shared-auth-scope-escalation-7c8f6a09</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4519-python-cpython-argument-injection-in-webbrowser-open</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32305-traefik-mtls-bypass-via-fragmented-tls-clienthello</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0677-totalsuite-totalcontest-lite-php-object-injection</loc><lastmod>2026-06-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23278-linux-kernel-nf-tables-improper-element-handling-in-netfilter</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23277-linux-kernel-null-pointer-dereference-in-teql-scheduler</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23276-linux-kernel-uncontrolled-recursion-in-tunnel-xmit-functions</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23275-linux-kernel-io-uring-race-condition-in-ring-resizing</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23274-linux-kernel-denial-of-service-in-netfilter-xt-idletimer</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23273-linux-kernel-use-after-free-in-macvlan-common-newlink</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23272-linux-kernel-nf-tables-use-after-free-in-nft-add-set-elem</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23271-linux-kernel-race-condition-in-perf-event-overflow-handling</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33017-langflow-unauthenticated-remote-code-execution-in-build-public</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32889-tinytag-infinite-loop-in-id3v2-sylt-frame-parsing</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4447-google-chrome-v8-inappropriate-implementation-code-execution</loc><lastmod>2026-06-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32875-ultrajson-integer-overflow-in-indent-handling</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32874-ultrajson-memory-leak-in-json-parsing-of-large-integers</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32829-pseitz-lz4-flex-information-disclosure-in-block-decompression</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22731-vmware-spring-boot-authentication-bypass-in-actuator-health</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32759-file-browser-improper-validation-in-tus-upload-handler</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-32432-craft-cms-remote-code-execution-via-code-injection</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-43510-apple-multiple-products-improper-locking-in-shared-memory</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-43520-apple-multiple-products-classic-buffer-overflow-in-kernel-memory</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-54068-laravel-livewire-code-injection-in-component-hydration</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4342-kubernetes-ingress-nginx-configuration-injection-via-annotations</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32022-openclaw-arbitrary-file-read-via-grep-policy-bypass-in-safebins</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4428-aws-aws-lc-revocation-check-bypass-in-x-509-certificate</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33409-parse-server-auth-provider-validation-bypass-on-login</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-unbounded-string-generation-denial-of-service-5b933c02</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-uncontrolled-recursion-in-object-rendering-leads-to-dos-d9c89d44</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/scriban-uncontrolled-recursion-in-parser-leads-to-denial-of-service-97b6b61c</loc><lastmod>2026-07-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33397-angular-ssr-protocol-relative-url-injection-via-backslash-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33349-fast-xml-parser-entity-expansion-bypass-via-falsy-zero-check</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33326-keystonejs-keystone-6-core-authorization-bypass-in-findmany</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33323-parse-server-email-verification-resend-page-leaks-user-existence</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/skia-python-vendored-libfreetype-vulnerability-7ca8305e</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33314-pyload-ng-auth-bypass-via-host-header-spoofing-in-click-n-load</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33311-dicebear-svg-injection-via-unsanitized-options</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33310-intake-command-injection-via-shell-expansion-in-parameter</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33309-langflow-path-traversal-and-arbitrary-file-write-in-v2-api</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32694-canonical-juju-idor-in-juju-secrets</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26931-elastic-metricbeat-prometheus-remote-write-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30924-qui-cors-misconfiguration-arbitrary-origins-trusted</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3029-artifex-pymupdf-path-traversal-in-embedded-get-function</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4426-libarchive-undefined-behavior-in-zisofs-decompression</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4424-libarchive-heap-out-of-bounds-read-in-rar-processing</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32843-linkitonedevgroup-lass-reflected-xss-in-pm25-php</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-69720-gnu-ncurses-stack-buffer-overflow-in-infocmp</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71260-bmc-footprints-itsm-deserialization-of-untrusted-data-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71259-bmc-footprints-itsm-server-side-request-forgery-in-externalfeed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71258-bmc-footprints-itsm-blind-server-side-request-forgery-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71257-bmc-footprints-itsm-authentication-bypass-in-rest-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mcp-connect-unauthenticated-remote-os-command-execution-via-bridge-69b9056e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33238-wwbn-avideo-path-traversal-in-listfiles-json-php</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33237-wwbn-avideo-ssrf-in-scheduler-plugin-callbackurl</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33068-anthropic-claude-code-workspace-trust-dialog-bypass-via-settings</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2006-10003-cpan-xml-parser-heap-buffer-overflow-in-st-serial-stack</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-14716-secomea-gatemanager-authentication-bypass-in-webserver-modules</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-allow-always-wrapper-persistence-authorization-bypass-81e2fa2c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-allowlist-bypass-in-system-run-exec-analysis-4df9b011</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-allowlist-bypass-in-system-run-via-env-s-182f7555</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-authorization-bypass-in-signal-group-allowlist-9f8d1766</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-authorization-bypass-in-synology-chat-plugin-564aecc6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-command-injection-in-lobster-tool-execution-on-windows-8e436c66</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-command-injection-in-windows-scheduled-task-script-generation-c41982a2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-local-command-injection-in-windows-scheduled-task-script-18fbdc37</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-macos-companion-app-allowlist-parsing-mismatch-in-system-run-01a9ce9e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-nextcloud-talk-webhook-replay-attack-81fa015d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-node-system-run-approval-integrity-bypass-via-argv-rewriting-f28b107f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-os-command-injection-in-windows-wrapper-resolution-b65b534d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-path-token-executable-rebind-in-system-run-approvals-b4777e1b</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-safebins-stdin-only-bypass-via-sort-and-grep-flags-b175a520</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-symlink-traversal-in-stagesandboxmedia-2958435f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-system-run-allowlist-bypass-via-shell-line-continuation-9ce5e556</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-web-search-ssrf-via-citation-redirect-2ba35329</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-windows-lobster-shell-fallback-command-injection-24965a36</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20131-cisco-secure-firewall-management-center-deserialization-rce</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15031-mlflow-path-traversal-in-pyfunc-extraction</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25873-baai-omnigen2-rl-remote-code-execution-in-reward-server</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33226-budibase-unrestricted-ssrf-in-rest-datasource-query-preview</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33155-deepdiff-memory-exhaustion-dos-in-restrictedunpickler</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33154-dynaconf-rce-via-insecure-template-evaluation-in-jinja-resolver</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33080-filament-tables-stored-xss-in-range-and-values-summarizers</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33163-parse-server-protected-fields-leak-via-livequery-afterevent</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32731-apostrophecms-import-export-arbitrary-file-write-via-path</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32730-apostrophecms-mfa-totp-bypass-in-bearer-token-middleware</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30048-notchatbot-webchat-stored-cross-site-scripting</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27135-nghttp2-denial-of-service-via-assertion-failure-in-session</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26740-giflib-buffer-overflow-in-egifgcbtoextension</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23270-linux-kernel-use-after-free-in-net-sched-act-ct-action</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23269-linux-kernel-apparmor-out-of-bounds-read-in-policy-unpacking</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23268-linux-kernel-apparmor-privilege-escalation-in-policy-management</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23267-linux-kernel-f2fs-race-condition-in-atomic-write-commit</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23266-linux-kernel-rivafb-divide-error-in-nv3-arb</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23265-linux-kernel-f2fs-denial-of-service-via-corrupted-node-footer</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23264-linux-kernel-denial-of-service-in-amd-gpu-driver</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23263-linux-kernel-memory-leak-in-io-uring-zcrx</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23262-linux-kernel-gve-driver-out-of-bounds-write-in-stats-reporting</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23261-linux-kernel-memory-leak-in-nvme-fc-admin-tagset-initialization</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23260-linux-kernel-memory-leak-in-regmap-maple-cache</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23259-linux-kernel-memory-leak-in-io-uring-read-write-cleanup</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23258-linux-kernel-liquidio-memory-leak-in-setup-nic-devices</loc><lastmod>2026-05-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23257-linux-kernel-liquidio-off-by-one-error-in-setup-nic-devices</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23256-linux-kernel-liquidio-off-by-one-error-in-setup-nic-devices</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23255-linux-kernel-race-condition-in-proc-net-ptype</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23254-linux-kernel-checksum-validation-error-in-udp-gro</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23253-linux-kernel-dvb-core-ringbuffer-corruption-in-dvb-dvr-open</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23252-linux-kernel-xfs-denial-of-service-in-scrub-macros</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23251-linux-kernel-xfs-null-pointer-dereference-in-scrub-repair</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23250-linux-kernel-xfs-null-pointer-dereference-in-scrub-component</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23249-linux-kernel-xfs-null-pointer-dereference-in-btree-revalidation</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71270-linux-kernel-loongarch-ade-exception-fixup-failure-in-bpf-jit</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71269-linux-kernel-btrfs-incorrect-data-reservation-handling-in-inode-c</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71268-linux-kernel-btrfs-reservation-leak-in-inline-extent-insertion</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33151-socket-io-denial-of-service-via-unbounded-binary-attachments</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33143-oneuptime-whatsapp-webhook-signature-verification-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30695-zucchetti-axess-xss-in-file-manager-cgi</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33142-oneuptime-clickhouse-sql-injection-in-query-parameters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33140-pyspector-stored-xss-in-html-report-generation</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33131-h3js-h3-middleware-bypass-via-host-header-spoofing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33129-h3js-h3-timing-side-channel-in-requirebasicauth</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33128-h3js-h3-server-sent-events-injection-in-createeventstream</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1323-the-mailqueue-typo3-extension-has-insecure-deserialization-in</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33001-jenkins-arbitrary-file-write-via-symbolic-link-extraction-in</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24063-arturia-software-center-privilege-escalation-via-insecure</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24062-arturia-software-center-insufficient-xpc-validation-in-privileged</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33060-ssrf-in-aborruso-ckan-mcp-server-via-base-url-allows-access-to</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32763-kysely-sql-injection-in-json-path-compilation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33053-langflow-idor-in-api-key-deletion-endpoint</loc><lastmod>2026-06-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23248-linux-kernel-use-after-free-in-perf-mmap</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23247-linux-kernel-tcp-source-port-leakage-in-secure-seq</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23246-linux-kernel-stack-out-of-bounds-write-in-mac80211-wifi</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23245-linux-kernel-race-condition-in-net-sched-act-gate</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23244-linux-kernel-nvme-out-of-bounds-read-in-nvme-pr-read-keys</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23243-linux-kernel-rdma-umad-out-of-bounds-write-in-ib-umad-write</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23242-linux-kernel-rdma-siw-null-pointer-dereference-in-header</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71267-linux-kernel-ntfs3-infinite-loop-in-ntfs-load-attr-list</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71266-linux-kernel-infinite-loop-in-ntfs3-indx-find</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71265-linux-kernel-infinite-loop-in-ntfs3-attr-load-runs-range</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4366-keycloak-ssrf-via-improper-http-redirect-handling-in-keycloak</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31938-parallax-jspdf-xss-in-output-function-options</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31898-parallax-jspdf-pdf-object-injection-in-createannotation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30922-pyasn1-uncontrolled-recursion-denial-of-service-during-decoding</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2575-red-hat-keycloak-denial-of-service-via-samlrequest-decompression</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/keycloak-improper-validation-of-encrypted-saml-assertions-4f23627a</loc><lastmod>2026-07-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2603-keycloak-saml-broker-authentication-bypass-via-disabled-identity</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2092-keycloak-improper-validation-of-encrypted-saml-assertions</loc><lastmod>2026-07-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28500-onnx-security-bypass-in-onnx-hub-load-via-silent-parameter</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22217-openclaw-arbitrary-code-execution-in-shell-env-via-shell-variable</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27459-pyopenssl-buffer-overflow-in-dtls-cookie-generation-callback</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-66376-synacor-zimbra-collaboration-suite-stored-xss-in-classic-ui</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20963-microsoft-sharepoint-deserialization-of-untrusted-data</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32841-edimax-gs-5008pl-authentication-bypass-in-management-interface</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32981-anyscale-ray-path-traversal-in-ray-dashboard</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32837-mackron-miniaudio-heap-out-of-bounds-read-in-wav-bext-parser</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32836-mackron-dr-libs-uncontrolled-memory-allocation-in-dr-flac-h</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30707-speedexam-online-examination-system-broken-access-control-in</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32256-music-metadata-infinite-loop-in-asf-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33042-parse-server-empty-authdata-bypasses-credential-requirement-on</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33036-fast-xml-parser-numeric-entity-expansion-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4295-aws-kiro-ide-arbitrary-code-execution-via-crafted-project-files</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33011-nestjs-platform-fastify-head-request-middleware-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32770-parse-server-livequery-denial-of-service-via-invalid-regex</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32742-parse-server-session-creation-endpoint-field-overwrite</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32878-parse-server-schema-poisoning-via-prototype-pollution-in-deep</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21570-atlassian-bamboo-data-center-rce-in-apache-struts</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32886-parse-server-denial-of-service-via-prototype-chain-traversal-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32943-parse-server-password-reset-token-single-use-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32944-parse-server-denial-of-service-via-deeply-nested-query-operators</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31865-elysia-cookie-value-prototype-pollution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29057-vercel-next-js-http-request-smuggling-in-rewrites</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27980-vercel-next-js-uncontrolled-resource-consumption-in-next-image</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27979-next-js-unbounded-postponed-resume-buffering-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27978-next-js-server-actions-csrf-bypass-via-null-origin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27977-vercel-next-js-null-origin-bypass-in-dev-hmr-websocket-csrf</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3564-connectwise-screenconnect-improper-cryptographic-signature</loc><lastmod>2026-07-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4324-red-hat-satellite-katello-sql-injection-in-bootc-images-api</loc><lastmod>2026-06-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3888-canonical-snapd-privilege-escalation-via-systemd-tmpfiles</loc><lastmod>2026-06-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-62320-hcl-unica-html-injection-in-web-interface</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28563-apache-airflow-authorization-bypass-in-dag-dependencies-endpoint</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28779-apache-airflow-session-hijacking-via-improper-cookie-path-scoping</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30911-apache-airflow-missing-authorization-in-execution-api-hitl</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26929-apache-airflow-rbac-bypass-in-fastapi-dagversion-listing-api</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4271-gnome-libsoup-use-after-free-in-http-2-server-implementation</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23241-linux-kernel-audit-rule-bypass-via-missing-xattrat-syscalls</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71239-linux-kernel-audit-rule-bypass-via-fchmodat2</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4208-authentication-bypass-in-extension-e-mail-mfa-provider-mfa-email</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4312-drangsoft-gcb-fcb-audit-software-missing-authentication-in-api</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4258-stanford-sjcl-private-key-recovery-via-invalid-curve-attack</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0708-vstakhov-libucl-out-of-bounds-read-in-ucl-object-emit</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4177-yaml-syck-heap-buffer-overflow-and-multiple-vulnerabilities</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-50881-tenor-solutions-use-it-flow-rce-in-moniteur-php</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32873-loop-with-unreachable-exit-condition-infinite-loop-in-ewe</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32769-fullchain-s-invalid-networkpolicy-enables-a-malicious-actor-to</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32771-monitoring-is-vulnerable-to-archive-slip-due-to-missing-checks-in</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33572-openclaw-insufficient-file-permissions-in-session-transcripts</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32980-openclaw-telegram-webhook-resource-exhaustion-via-unauthenticated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32987-openclaw-bootstrap-setup-code-replay-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29516-buffalo-terastation-nas-ts5400r-excessive-file-permissions-in-etc</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-69196-prefecthq-fastmcp-improper-resource-handling-in-oauth-proxy</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32728-parse-server-stored-xss-filter-bypass-via-content-type-mime</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4269-aws-bedrock-agentcore-starter-toolkit-code-injection-via-s3</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4224-python-pyexpat-stack-overflow-in-conv-content-model</loc><lastmod>2026-06-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3644-python-cpython-incomplete-control-character-validation-in-http</loc><lastmod>2026-06-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28498-authlib-fail-open-cryptographic-verification-in-oidc-hash-binding</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27962-authlib-jwk-header-injection-signature-verification-bypass</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23862-dell-thinos-command-injection-privilege-escalation</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4270-aws-api-mcp-server-file-access-bypass-in-no-access-and-workdir</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32723-sandboxjs-execution-quota-bypass-in-timers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32732-lean-prover-unicode-input-component-cross-site-scripting</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32638-studiocms-rest-getusers-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32596-nicolargo-glances-missing-authentication-in-rest-api</loc><lastmod>2026-06-16</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4276-librechat-rag-api-log-injection-in-file-id-parameter</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-62319-hcl-unica-blind-sql-injection-in-backend-configuration-queries</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29112-dicebear-converter-uncontrolled-memory-allocation-in-svg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32774-vulnogram-stored-cross-site-scripting-in-comment-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-2274-forcepoint-web-security-stored-xss-in-management-console</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25534-spinnaker-clouddriver-and-orca-url-validation-bypass-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4255-thermalright-tr-vision-home-privilege-escalation-via-dll-hijacking</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3476-dassault-systemes-solidworks-desktop-code-injection-via-crafted</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3442-gnu-binutils-out-of-bounds-read-in-bfd-linker</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3441-gnu-binutils-out-of-bounds-read-in-bfd-linker</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3227-tp-link-multiple-routers-os-command-injection-in-configuration</loc><lastmod>2026-07-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3111-educativa-campus-idor-in-profile-photo-endpoint</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3110-educativa-campus-idor-in-user-administration-export</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3086-gstreamer-h-266-codec-parser-out-of-bounds-write-in-aps-units</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3085-gstreamer-heap-overflow-in-rtpqdm2depay-element</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3084-gstreamer-h-266-codec-parser-integer-underflow-in-picture</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3083-gstreamer-rtpqdm2depay-out-of-bounds-write-in-x-qdm-rtp-parsing</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3082-gstreamer-jpeg-parser-heap-overflow-in-huffman-table-processing</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3081-gstreamer-h-266-codec-parser-stack-based-buffer-overflow</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3020-wakyma-application-web-idor-account-takeover</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32778-libexpat-null-pointer-dereference-in-setcontext-function</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32777-libexpat-infinite-loop-in-entityvalueprocessor-during-dtd-parsing</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32776-libexpat-null-pointer-dereference-in-xml-entity-parsing</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32640-danthedeckie-simpleeval-sandbox-escape-via-attribute-leakage</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31386-litespeed-technologies-openlitespeed-and-lsws-enterprise-os</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2923-gstreamer-out-of-bounds-write-in-dvb-subtitles-handling</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2922-gstreamer-realmedia-demuxer-out-of-bounds-write</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2921-gstreamer-riff-palette-integer-overflow-in-avi-handling</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2920-gstreamer-heap-overflow-in-asf-demuxer</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28522-tuya-arduino-tuyaopen-null-pointer-dereference-in-wifiudp</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25083-growi-missing-authorization-in-openai-thread-and-message-api</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20994-samsung-account-url-redirection-and-token-theft</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15587-tinycontrol-lan-controllers-and-tcpdu-admin-password-disclosure</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-14287-mlflow-command-injection-in-sagemaker-container-parameter</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-11500-tinycontrol-lan-controllers-and-tcpdu-credential-leak-in-web</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20032-zkteco-zkaccess-security-system-stored-xss-in-accholidays</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20031-zkteco-zkbiosecurity-auth-bypass-in-vislogin-jsp</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20030-zkteco-zkbiosecurity-user-enumeration-in-authloginaction</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20029-zkteco-zkbiosecurity-directory-traversal-in-baseaction-getpagexml</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20028-zkteco-zkbiosecurity-csrf-in-superadmin-account-creation</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20027-zkteco-zkbiosecurity-reflected-xss-in-multiple-scripts</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20026-zkteco-zkbiosecurity-hardcoded-credentials-in-bundled-apache</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20025-zkteco-zkaccess-professional-privilege-escalation-via-insecure</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2016-20024-zkteco-zktime-net-privilege-escalation-via-insecure-file</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-47813-wing-ftp-server-information-disclosure-in-loginok-html</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4092-google-clasp-path-traversal-in-clone-and-pull</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32933-automapper-uncontrolled-recursion-in-core-mapping-engine</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32635-angular-xss-in-i18n-attribute-bindings</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32630-file-type-zip-decompression-bomb-dos-via-content-types-xml</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32974-openclaw-feishu-webhook-event-forgery-via-incomplete</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33573-openclaw-gateway-agent-workspace-boundary-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22172-openclaw-websocket-shared-auth-scope-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32918-openclaw-session-status-sandbox-escape</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32914-openclaw-privilege-escalation-via-improper-authorization-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32973-openclaw-exec-approval-allowlist-pattern-overmatch-on-posix-paths</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32924-openclaw-feishu-reaction-events-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32972-openclaw-authorization-bypass-in-browser-profile-management</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33575-openclaw-pairing-setup-code-credential-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32975-openclaw-zalouser-allowlist-authorization-bypass-in-group-routing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32621-apollo-federation-prototype-pollution-via-incomplete-key</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1527-undici-crlf-injection-in-upgrade-option</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2581-undici-unbounded-memory-consumption-in-deduplicationhandler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1525-node-js-undici-http-request-smuggling-via-duplicate-content-length</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32598-oneuptime-password-reset-token-logged-at-info-level</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32594-parse-server-graphql-websocket-endpoint-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32269-parse-server-oauth2-adapter-token-misvalidation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32308-oneuptime-stored-xss-in-mermaid-diagram-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32306-oneuptime-clickhouse-sql-injection-in-analytics-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4111-libarchive-infinite-loop-in-rar5-decompression</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4105-systemd-systemd-machined-improper-access-control-in-d-bus</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3999-pointsharp-id-server-horizontal-privilege-escalation</loc><lastmod>2026-06-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3873-avantra-hard-coded-credentials-in-legacy-built-in-user-account</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32597-pyjwt-insufficient-verification-of-critical-header-extensions</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32304-locutus-code-injection-in-create-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31806-freerdp-heap-buffer-overflow-in-gdi-surface-bits-via-nscodec</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2673-openssl-algorithm-downgrade-in-tls-1-3-key-exchange-negotiation</loc><lastmod>2026-05-18</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23943-erlang-otp-ssh-denial-of-service-via-zlib-compression-bomb</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23942-erlang-otp-path-traversal-in-ssh-sftpd-root-directory-validation</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23941-erlang-otp-http-request-smuggling-in-inets-httpd</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23940-hexpm-denial-of-service-via-excessive-allocation-in-package</loc><lastmod>2026-07-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-8766-red-hat-noobaa-core-privilege-escalation-via-incorrect-etc-passwd</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-71263-at-t-bell-laboratories-unix-v4-buffer-overflow-in-su</loc><lastmod>2026-06-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-57849-red-hat-fuse-privilege-escalation-in-container-images-via-etc</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15515-vivo-easyshare-missing-authentication-in-file-sharing-feature</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-13779-abb-awin-gw100-and-gw120-missing-authentication-for-critical</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-13778-abb-awin-gw100-and-gw120-missing-authentication-for-critical</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-13777-abb-awin-gw100-and-gw120-authentication-bypass-via-capture-replay</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-13702-ibm-sterling-partner-engagement-manager-6-2-3-0-through-6-2-3-5</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32923-openclaw-discord-guild-reaction-ingress-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31899-kozea-cairosvg-exponential-denial-of-service-in-defs-py</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32919-openclaw-privilege-escalation-via-agent-slash-commands</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32978-openclaw-script-runner-approval-bypass-in-system-run</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32979-openclaw-interpreter-and-runtime-command-approval-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32915-openclaw-leaf-subagents-sandbox-boundary-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32922-openclaw-device-token-privilege-escalation-to-operator-admin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31882-dagu-sse-authentication-bypass-in-basic-auth-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26954-sandboxjs-sandbox-escape-allowing-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3909-google-skia-out-of-bounds-write-in-google-chrome</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3910-google-chromium-v8-memory-corruption-in-javascript-engine</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3611-honeywell-iq4-series-bms-controller-missing-authentication-in-web</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2229-node-js-undici-denial-of-service-via-invalid-websocket-compression</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1528-node-js-undici-denial-of-service-via-websocket-length-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1526-node-js-undici-dos-via-unbounded-websocket-decompression-memory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32302-openclaw-websocket-origin-validation-bypass-in-trusted-proxy-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29066-tinacms-cli-arbitrary-file-read-via-disabled-vite-filesystem</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28793-tinacms-path-traversal-in-cli-development-server-media-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28792-tinacms-cli-dev-server-cors-misconfiguration-and-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32274-psf-black-arbitrary-file-write-via-unsanitized-cache-filename</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32249-vim-null-pointer-dereference-in-nfa-regex-engine</loc><lastmod>2026-07-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3497-openssh-gssapi-uninitialized-variable-use-in-linux-distributions</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2376-red-hat-mirror-registry-ssrf-via-open-redirect-in-quay</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-66955-asseco-see-live-2-0-local-file-inclusion-in-communication</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61154-gnu-libredwg-heap-buffer-overflow-in-decompress-r2004-section</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-13913-inductive-automation-ignition-deserialization-in-file-import</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31841-hyperterse-mcp-search-tool-raw-sql-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28791-tinacms-path-traversal-in-media-upload-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32141-webreflection-flatted-stack-overflow-in-parse-function</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-13462-python-cpython-tarfile-misinterpretation-via-gnu-long-name</loc><lastmod>2026-06-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24125-tinacms-tinacms-graphql-path-traversal-in-graphql-mutations</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32248-parse-server-account-takeover-via-operator-injection-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32242-parse-server-race-condition-in-oauth2-adapter-singleton</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73426-basecamp-trix-stored-xss-in-serialized-attributes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28356-defnull-multipart-redos-in-parse-options-header</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21708-veeam-backup-replication-sql-injection-rce-as-postgres-user</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21672-a-vulnerability-allowing-local-privilege-escalation-on-windows</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/sveltejs-devalue-prototype-pollution-in-parse-and-unflatten-d6289af5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/sveltejs-devalue-prototype-pollution-in-parse-and-unflatten-functions-957ba4d0</loc><lastmod>2026-06-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32234-parse-server-sql-injection-via-query-field-name-in-postgresql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28384-canonical-lxd-improper-sanitization-in-compression-algorithm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21671-a-vulnerability-allowing-an-authenticated-user-with-the-backup</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21670-a-vulnerability-allowing-a-low-privileged-user-to-extract-saved</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21669-a-vulnerability-allowing-an-authenticated-domain-user-to-perform</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21668-a-vulnerability-allowing-an-authenticated-domain-user-to-bypass</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32237-backstage-scaffolder-backend-secret-exposure-in-dry-run-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32236-backstage-auth-backend-ssrf-in-cimd-metadata-fetch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32235-backstage-auth-backend-oauth-redirect-uri-allowlist-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32106-studiocms-rest-api-missing-rank-check-in-user-creation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32104-studiocms-idor-in-user-notification-preferences</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32103-studiocms-idor-admin-to-owner-account-takeover-via-password-reset</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32101-studiocms-s3-storage-manager-authorization-bypass-via-missing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32230-uptime-kuma-missing-authorization-check-on-ping-badge-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32109-copyparty-xss-via-crafted-url-to-folder-with-prologue-html</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32108-9001-copyparty-incorrect-authorization-in-ftp-and-sftp-shares</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32031-openclaw-authentication-bypass-in-api-channels-via-path</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32895-openclaw-slack-system-events-authorization-bypass-in-member-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-dangling-symlink-path-escape-in-sandbox-boundary-3738224b</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32055-openclaw-workspace-path-traversal-via-symlink-boundary-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-line-group-allowlist-scope-mismatch-with-dm-pairing-e3c388e9</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33574-openclaw-skills-install-download-path-traversal-via-tools-root</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32098-parse-server-protected-fields-bypass-in-livequery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31958-tornado-denial-of-service-in-multipart-form-parsing</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31873-unhead-uri-scheme-sanitization-bypass-via-case-sensitivity</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31860-unhead-useheadsafe-xss-bypass-via-attribute-name-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30226-devalue-prototype-pollution-in-parse-and-unflatten</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2514-progress-flowmon-ads-cross-site-scripting-via-malicious-network</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2513-progress-flowmon-ads-csrf-in-authenticated-session</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-env-override-code-injection-in-skill-env-handler-151ca471</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-safebins-file-existence-oracle-information-disclosure-71412ebe</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3989-sglang-unsafe-pickle-deserialization-in-replay-request-dump-py</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2366-keycloak-authorization-bypass-in-admin-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1878-asus-rog-peripheral-driver-privilege-escalation-via-installer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2023-43010-apple-and-red-hat-memory-corruption-in-web-content-processing</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31988-yauzl-off-by-one-error-in-ntfs-timestamp-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3965-whyour-qinglong-remote-command-execution-via-api-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2640-lenovo-pc-manager-privilege-escalation-via-process-termination</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2368-lenovo-filez-improper-certificate-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70041-an-issue-pertaining-to-cwe-259-use-of-hard-coded-password-was</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-66956-asseco-see-live-insecure-access-control-in-communication</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32094-shescape-escape-bracket-glob-expansion-bypass-on-bash-busybox-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31887-shopware-unauthenticated-order-data-extraction-in-store-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20117-cisco-unified-ccx-cross-site-scripting-in-web-management</loc><lastmod>2026-07-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20074-cisco-ios-xr-software-dos-in-is-is-multi-instance-routing</loc><lastmod>2026-07-08</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20046-cisco-ios-xr-software-privilege-escalation-in-task-group</loc><lastmod>2026-07-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20040-cisco-ios-xr-software-privilege-escalation-in-cli</loc><lastmod>2026-07-01</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1524-neo4j-enterprise-edition-incorrect-authorization-in-sso</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1471-neo4j-enterprise-edition-incorrect-authorization-in-sso</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70082-lantronix-eds3000ps-unverified-password-change-in-ltrx-evo</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67041-lantronix-eds3000ps-os-command-injection-in-tftp-client</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67039-lantronix-eds3000ps-authentication-bypass-in-management-pages</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67038-lantronix-eds5000-os-command-injection-in-http-rpc-module</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67037-lantronix-eds5000-os-command-injection-in-tunnel-parameter</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67036-lantronix-eds5000-os-command-injection-in-log-info-page</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67035-lantronix-eds5000-os-command-injection-in-ssh-management-pages</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-67034-lantronix-eds5000-os-command-injection-in-ssl-credential-deletion</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31892-argo-workflows-security-bypass-via-podspecpatch-in</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28229-argo-workflows-authentication-bypass-in-workflow-template</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1497-neo4j-enterprise-edition-incorrect-authorization-in-composite</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30903-zoom-workplace-privilege-escalation-in-mail-feature</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30902-zoom-clients-for-windows-privilege-escalation</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30901-zoom-rooms-for-windows-privilege-escalation-in-kiosk-mode</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30900-zoom-workplace-for-windows-privilege-escalation-in-update</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70330-orbis-easy-grade-pro-out-of-bounds-read-in-egp-file-parsing</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31839-striae-hash-validation-integrity-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3904-gnu-glibc-race-condition-crash-in-nscd-client-via-memcmp</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32062-openclaw-resource-exhaustion-in-voice-call-media-stream-websocket</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3784-curl-wrong-proxy-connection-reuse-with-credentials</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29515-micode-fileexplorer-authentication-bypass-in-swiftp-server</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23817-hpe-aos-cx-open-redirect-in-web-management-interface</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21310-adobe-commerce-improper-input-validation-security-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21309-adobe-commerce-incorrect-authorization-security-feature-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21297-adobe-commerce-incorrect-authorization-in-security-feature</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21296-adobe-commerce-incorrect-authorization-in-security-feature</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21295-adobe-commerce-open-redirect-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21294-adobe-commerce-server-side-request-forgery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21293-adobe-commerce-server-side-request-forgery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21292-adobe-commerce-stored-cross-site-scripting-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21291-adobe-commerce-stored-cross-site-scripting-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21290-adobe-commerce-stored-cross-site-scripting-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21289-adobe-commerce-authorization-bypass-in-access-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21286-adobe-commerce-incorrect-authorization-in-security-feature</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21285-adobe-commerce-incorrect-authorization-in-feature-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21284-adobe-commerce-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21282-adobe-commerce-improper-input-validation-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27266-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27265-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27262-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27257-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27256-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27255-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27254-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27253-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27251-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27250-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27249-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27248-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27247-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27244-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27242-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27241-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27240-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27239-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27237-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27236-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27235-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27234-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27233-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27232-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27231-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27230-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27229-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27228-adobe-experience-manager-stored-cross-site-scripting-in-form</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27226-adobe-experience-manager-stored-cross-site-scripting-in-form</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27225-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27224-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27223-adobe-experience-manager-stored-xss-in-form-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31960-anchore-quill-denial-of-service-via-unbounded-read-in</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31961-anchore-quill-unbounded-memory-allocation-in-mach-o-parsing</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31959-anchore-quill-ssrf-in-apple-notarization-log-retrieval</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31975-siteboon-claude-code-ui-unauthenticated-rce-via-websocket-shell</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31901-parse-server-user-enumeration-via-email-verification-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31875-parse-server-mfa-recovery-code-reuse-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31872-parse-server-protected-fields-bypass-via-dot-notation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31871-parse-server-sql-injection-in-increment-operation-on-postgresql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31868-parse-server-stored-xss-via-html-renderable-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31856-parse-server-sql-injection-in-increment-operation-on-postgresql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31859-craftcms-reflected-xss-via-incomplete-return-url-sanitization</loc><lastmod>2026-05-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31862-siteboon-claude-code-ui-command-injection-in-git-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31829-flowise-ssrf-in-http-node-leading-to-internal-network-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31828-parse-server-ldap-injection-in-authentication-adapter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31800-parse-server-master-key-bypass-in-generic-class-routes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30973-appium-support-zip-slip-arbitrary-file-write-in-zip-extraction</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30972-parse-server-rate-limit-bypass-via-batch-request-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30967-parse-server-oauth2-authentication-adapter-account-takeover-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30966-parse-server-role-escalation-and-clp-bypass-via-direct-join-table</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30965-parse-server-session-token-exfiltration-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30962-parse-server-protected-fields-bypass-via-logical-query-operators</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30949-parse-server-missing-audience-validation-in-keycloak</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30948-parse-server-stored-xss-via-svg-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30947-parse-server-class-level-permissions-bypass-in-livequery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30946-parse-server-denial-of-service-via-unbounded-query-complexity</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30945-studiocms-idor-in-api-token-revocation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30941-parse-server-nosql-injection-in-password-reset-and-email</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31861-siteboon-claude-code-ui-shell-command-injection-in-git-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31808-sindresorhus-file-type-infinite-loop-in-asf-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31802-node-tar-symlink-path-traversal-via-drive-relative-linkpath</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27272-adobe-illustrator-out-of-bounds-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27271-adobe-illustrator-heap-buffer-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27270-adobe-illustrator-out-of-bounds-read-in-memory-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27268-adobe-illustrator-out-of-bounds-read-in-memory-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27267-adobe-illustrator-stack-based-buffer-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21362-adobe-illustrator-out-of-bounds-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21333-adobe-illustrator-untrusted-search-path-arbitrary-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31837-istio-jwks-resolver-failure-exposes-hardcoded-default-keys</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31812-quinn-quinn-proto-denial-of-service-via-malformed-quic-packet</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28807-gleam-wisp-path-traversal-in-serve-static</loc><lastmod>2026-06-09</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28806-nerveshub-nerves-hub-web-improper-authorization-in-device-api</loc><lastmod>2026-05-27</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27278-adobe-acrobat-reader-use-after-free</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27221-adobe-acrobat-reader-improper-certificate-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27220-adobe-acrobat-reader-use-after-free-in-file-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26801-pdfmake-server-side-request-forgery-in-url-resolver</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30951-sequelize-sql-injection-in-json-where-clause-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30837-elysia-string-url-format-redos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29793-feathers-nosql-injection-via-websocket-id-parameter-in-mongodb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29792-feathers-oauth-callback-account-takeover</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29113-craft-cms-csrf-in-preview-token-creation-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23868-giflib-double-free-in-gifmakesavedimage</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28292-steveukx-simple-git-remote-code-execution-via-case-sensitivity</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27281-adobe-dng-sdk-integer-overflow-in-image-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27280-adobe-dng-sdk-out-of-bounds-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27279-adobe-substance3d-stager-out-of-bounds-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27277-adobe-substance3d-stager-use-after-free-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27276-adobe-substance3d-stager-use-after-free</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27275-adobe-substance3d-stager-out-of-bounds-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27274-adobe-substance3d-stager-out-of-bounds-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27273-adobe-substance3d-stager-out-of-bounds-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27269-adobe-premiere-pro-out-of-bounds-read-in-file-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27219-adobe-substance3d-painter-out-of-bounds-read-in-memory-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27218-adobe-substance3d-painter-null-pointer-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27217-adobe-substance3d-painter-null-pointer-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27216-adobe-substance3d-painter-out-of-bounds-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27215-adobe-substance3d-painter-null-pointer-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27214-adobe-substance3d-painter-null-pointer-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21365-adobe-substance3d-painter-out-of-bounds-read-in-memory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21364-adobe-substance-3d-painter-null-pointer-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21363-adobe-substance3d-painter-null-pointer-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26118-microsoft-azure-mcp-server-ssrf-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26308-envoy-rbac-header-validation-bypass-via-multi-value-concatenation</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31840-parse-server-sql-injection-via-dot-notation-field-name-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3843-nefteprodukttekhnika-buk-ts-g-sql-injection-in-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2339-tubitak-bilgem-liderahenk-missing-authentication-for-critical</loc><lastmod>2026-06-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2273-schneider-electric-ecostruxure-automation-expert-code-injection</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26738-uderzo-software-spacesniffer-stack-buffer-overflow-in-snapshot</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26134-microsoft-office-integer-overflow-in-android-app</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26130-microsoft-asp-net-core-denial-of-service-via-uncontrolled</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26128-microsoft-windows-smb-server-privilege-escalation-via-improper</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26110-microsoft-office-type-confusion-local-code-execution</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25836-fortinet-fortisandbox-cloud-os-command-injection-in-web-ui</loc><lastmod>2026-05-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25187-microsoft-windows-winlogon-privilege-escalation-via-link</loc><lastmod>2026-05-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25180-microsoft-graphics-component-out-of-bounds-read</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24294-microsoft-windows-smb-server-improper-authentication-privilege</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24293-microsoft-windows-ancillary-function-driver-null-pointer</loc><lastmod>2026-06-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24289-microsoft-windows-kernel-use-after-free-privilege-escalation</loc><lastmod>2026-06-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24285-microsoft-windows-win32k-use-after-free-privilege-escalation</loc><lastmod>2026-05-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23907-apache-pdfbox-path-traversal-in-extractembeddedfiles</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23240-linux-kernel-race-condition-in-tls-sw-cancel-work-tx</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23239-linux-kernel-race-condition-in-espintcp-close</loc><lastmod>2026-05-20</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22614-eaton-easysoft-insecure-encryption-in-project-files</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21262-microsoft-sql-server-privilege-escalation-via-improper-access</loc><lastmod>2026-07-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1286-schneider-electric-ecostruxure-foxboro-dcs-deserialization-in</loc><lastmod>2026-06-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-56422-limesurvey-unsafe-deserialization-remote-code-execution</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-56421-limesurvey-sql-injection-allows-remote-data-extraction</loc><lastmod>2026-07-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-13902-schneider-electric-modicon-controllers-xss-in-web-server</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-13901-schneider-electric-modicon-dos-in-machine-expert-protocol</loc><lastmod>2026-06-23</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-11739-schneider-electric-ecostruxure-power-products-unsafe</loc><lastmod>2026-06-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30944-studiocms-privilege-escalation-via-insecure-api-token-generation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29773-kubewarden-incorrect-authorization-in-deprecated-host-callback</loc><lastmod>2026-05-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28267-digital-arts-i-improper-file-permissions-in-windows-products</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27688-sap-netweaver-as-abap-missing-authorization-check-in-rfc-function</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24316-sap-netweaver-as-abap-ssrf-in-abap-test-report</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24310-sap-netweaver-as-abap-missing-authorization-check-in-abap</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24309-sap-netweaver-as-for-abap-missing-authorization-check-in-function</loc><lastmod>2026-06-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-2399-mitsubishi-electric-cnc-out-of-bounds-read-in-network-protocol</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28693-imagemagick-integer-overflow-in-dib-coder</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28691-imagemagick-uninitialized-pointer-dereference-in-jbig-decoder</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1776-camaleon-cms-path-traversal-in-aws-s3-uploader</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30959-oneuptime-whatsapp-resend-verification-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30957-oneuptime-synthetic-monitor-remote-code-execution-via-exposed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30956-oneuptime-authorization-bypass-via-is-multi-tenant-query-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30952-liquidjs-path-traversal-in-file-resolution-fallback</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3089-actual-budget-actual-sync-server-path-traversal-in-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30939-parse-server-prototype-chain-dos-and-cloud-function-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30938-parse-server-requestkeyworddenylist-bypass-in-nested-objects</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30925-parse-server-regular-expression-denial-of-service-in-livequery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25960-vllm-ssrf-protection-bypass-in-mediaconnector-via-url-parsing</loc><lastmod>2026-07-17</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15603-open-webui-hardcoded-jwt-secret-in-dead-code</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0846-nltk-arbitrary-file-read-in-nltk-util-filestring</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70030-sunbird-ed-sunbirded-portal-redos-in-web-portal</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27646-openclaw-sandbox-escape-via-acp-spawn-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-system-run-allowlist-bypass-via-shell-comment-injection-62af10bd</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-operator-write-privilege-escalation-in-chat-send-f1856140</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27183-openclaw-system-run-shell-approval-gating-bypass-via-dispatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32913-openclaw-fetch-guard-custom-authorization-header-leakage-across</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-improper-authorization-scoping-in-allowlist-store-d9a6f398</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-authorization-bypass-in-system-run-via-powershell-encoded-e187cab0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-system-run-environment-override-sandbox-bypass-13d941a5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-hooks-auth-lockout-bypass-via-non-post-requests-37eea229</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-dashboard-credential-exposure-via-url-query-and-localstorage-1cb7c350</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30933-filebrowser-quantum-password-protected-share-bypass-via-public</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29023-keygraph-shannon-hard-coded-api-key-in-router-configuration</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30863-parse-server-jwt-audience-validation-bypass-in-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30854-parse-server-graphql-introspection-bypass-via-inline-fragments</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30850-parse-server-file-metadata-endpoint-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30848-parse-server-pagesrouter-path-traversal-allows-file-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30920-oneuptime-broken-access-control-in-github-app-installation-flow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25041-budibase-budibase-server-command-injection-in-postgresql-dump</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70060-an-issue-pertaining-to-cwe-79-improper-neutralization-of-input</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70040-lupinlin1-jimeng-web-mcp-sensitive-information-disclosure-in-logs</loc><lastmod>2026-05-21</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-14027-linux-kernel-memory-leak-in-fremovexattr-system-call</loc><lastmod>2026-06-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25604-apache-airflow-aws-auth-manager-saml-authentication-bypass</loc><lastmod>2026-07-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3823-atop-technologies-ehg2408-stack-based-buffer-overflow</loc><lastmod>2026-07-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2021-22054-omnissa-workspace-one-uem-ssrf-in-management-console</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-26399-solarwinds-web-help-desk-deserialization-rce-in-ajaxproxy</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1603-ivanti-endpoint-manager-authentication-bypass-in-credential</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2671-mendi-neurofeedback-headset-v4-cleartext-transmission-in-bluetooth</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29786-isaacs-node-tar-path-traversal-via-drive-relative-hardlink</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29771-gravitl-netmaker-denial-of-service-via-server-shutdown-endpoint</loc><lastmod>2026-05-18</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28678-toxicbishop-dsa-study-hub-insufficiently-protected-credentials</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29186-backstage-techdocs-arbitrary-code-execution-via-mkdocs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2219-debian-dpkg-infinite-loop-in-zstd-decompression</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24308-apache-zookeeper-sensitive-information-disclosure-in-zkconfig-log</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24281-apache-zookeeper-hostname-verification-bypass-in-zktrustmanager</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30921-oneuptime-synthetic-monitor-remote-code-execution-via-exposed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/x402-sdk-payment-processing-vulnerability-on-solana-0296ca74</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30916-shescape-shell-misidentification-via-symlink-chains</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-69971-frangoteam-fuxa-hardcoded-jwt-signing-secret-fallback</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30887-oneuptime-unsandboxed-code-execution-in-probe-allowing-rce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30870-powersync-service-core-authorization-bypass-via-ignored-sync</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30835-parse-server-information-disclosure-in-regex-query-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30824-flowise-missing-authentication-on-nvidia-nim-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30823-flowise-idor-in-sso-configuration-api-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30822-flowise-mass-assignment-in-api-v1-leads-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27137-google-go-crypto-x509-improper-certificate-validation-in-email</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25679-google-go-net-url-insufficient-validation-of-ipv6-host-literals</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-69654-quickjs-denial-of-service-via-assertion-failure-in-js-freeruntime</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29063-immutable-js-prototype-pollution-in-merge-and-map-apis</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-69653-quickjs-assertion-failure-in-gc-decref-child</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30821-flowise-arbitrary-file-upload-via-mime-type-spoofing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30820-flowise-authorization-bypass-via-spoofed-x-request-from-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30241-mercurius-querydepth-limit-bypass-in-websocket-subscriptions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30229-parse-server-readonlymasterkey-privilege-escalation-in-loginas</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30228-parse-server-readonlymasterkey-authorization-bypass-in-file</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/vercel-workflow-predictable-webhook-token-authentication-bypass-ac67f250</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30830-kepano-defuddle-xss-in-findcontentbyschematext-image-tag</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30827-express-rate-limit-ipv4-mapped-ipv6-address-bypass-in-subnet</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29091-locutus-remote-code-execution-in-call-user-func-array</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29783-github-copilot-cli-arbitrary-code-execution-via-bash-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70363-ibexa-ez-platform-incorrect-access-control-in-rest-api</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26018-coredns-denial-of-service-in-loop-detection-plugin</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26017-coredns-access-control-bypass-via-plugin-execution-order</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2754-navtor-navbox-missing-authentication-in-http-api</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2753-navtor-navbox-absolute-path-traversal</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2752-navtor-navbox-information-disclosure-in-ais-data-api</loc><lastmod>2026-06-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1468-quickcms-cross-site-request-forgery-in-forms</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23925-zabbix-incorrect-authorization-in-configuration-import-api</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29074-svgo-denial-of-service-via-xml-entity-expansion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29062-fasterxml-jackson-core-dos-via-nesting-depth-limit-bypass</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29049-chainguard-melange-resource-exhaustion-in-update-cache</loc><lastmod>2026-07-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28802-authlib-signature-verification-bypass-via-none-algorithm-in-jwt</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28474-openclaw-nextcloud-talk-allowlist-bypass-via-display-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28465-openclaw-voice-call-plugin-webhook-verification-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28395-openclaw-improper-network-binding-in-chrome-extension-relay</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70948-perfood-couch-auth-host-header-injection-in-mailer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70949-perfood-couch-auth-observable-timing-discrepancy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-43035-fonoster-directory-traversal-in-voiceserver</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3419-fastify-malformed-content-type-header-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22723-inappropriate-user-token-revocation-due-to-a-logic-error-in-the</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28277-langchain-langgraph-unsafe-msgpack-deserialization-in</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3047-keycloak-saml-broker-authentication-bypass-via-disabled-client</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3009-keycloak-authentication-bypass-via-disabled-identity-provider</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29054-traefik-case-sensitivity-bypass-in-connection-header-allows</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26999-traefik-resource-exhaustion-via-stalled-tls-handshakes-in-tcp</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-24457-eclipse-openmq-arbitrary-file-read-via-unsafe-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-45691-exploding-gradients-ragas-arbitrary-file-read-in</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-64166-mercurius-incorrect-content-type-parsing-csrf-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30798-rustdesk-client-remote-denial-of-service-in-heartbeat-loop</loc><lastmod>2026-06-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30796-rustdesk-client-plaintext-credential-disclosure-in-heartbeat-sync</loc><lastmod>2026-06-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30794-rustdesk-client-improper-certificate-validation-in-tls-transport</loc><lastmod>2026-06-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30792-rustdesk-client-remote-strategy-injection-via-man-in-the-middle</loc><lastmod>2026-06-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30790-rustdesk-client-and-server-weak-password-hashing-and-credential</loc><lastmod>2026-06-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30789-rustdesk-client-authentication-bypass-via-session-replay-and-weak</loc><lastmod>2026-06-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30784-rustdesk-server-authentication-bypass-in-hbbs-and-hbbr-modules</loc><lastmod>2026-06-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-30783-rustdesk-client-privilege-abuse-via-unauthenticated-strategy</loc><lastmod>2026-06-22</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25048-mlc-ai-xgrammar-uncontrolled-recursion-in-nested-syntax</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-69534-python-markdown-denial-of-service-via-malformed-html-sequences</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-1605-eclipse-jetty-memory-leak-in-gziphandler</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2743-seppmail-secure-e-mail-gateway-rce-via-path-traversal-in-lft</loc><lastmod>2026-05-18</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27982-django-allauth-open-redirect-in-saml-idp-initiated-sso</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29052-humhub-calendar-module-stored-xss-in-event-types</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29784-ghost-incomplete-csrf-protections-in-otc-login</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29182-parse-server-cloud-hooks-and-jobs-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29778-pyload-path-traversal-in-edit-package</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29184-backstage-plugin-scaffolder-backend-log-redaction-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29185-backstage-path-traversal-in-scm-url-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29780-eml-parser-path-traversal-in-example-script</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2017-7921-hikvision-ip-cameras-improper-authentication</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2021-22681-rockwell-automation-logix-designer-authentication-bypass-in-logix</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2021-30952-apple-multiple-products-integer-overflow-in-webkit-content</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2023-41974-apple-ios-and-ipados-use-after-free-in-kernel</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2297-cpython-sourcelessfileloader-audit-event-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29000-pac4j-jwt-authentication-bypass-in-jwtauthenticator</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-66024-xwiki-blog-application-stored-xss-in-post-title</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29065-changedetection-io-zip-slip-in-backup-restore</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28685-kimai-missing-authorization-in-api-invoice-endpoint</loc><lastmod>2026-05-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28681-irrd-host-header-injection-in-password-reset</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29087-hono-node-server-authorization-bypass-via-encoded-slashes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29086-hono-cookie-attribute-injection-in-setcookie</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29085-hono-sse-control-field-injection-via-cr-lf-in-streamsse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29045-hono-arbitrary-file-access-in-servestatic-via-url-encoding-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22170-openclaw-bluebubbles-access-control-bypass-with-empty-allowlist</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-local-file-exfiltration-via-mcp-tool-result-directive-6e4312ce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-workspace-boundary-bypass-via-hardlink-aliases-d7cc3b9a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20064-cisco-secure-firewall-threat-defense-authenticated-dos-via-cli</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20025-cisco-asa-and-ftd-software-heap-corruption-in-ospf-protocol</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20024-cisco-asa-and-ftd-software-heap-corruption-in-ospf-protocol</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20023-cisco-secure-firewall-asa-and-ftd-ospf-memory-corruption-denial</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20022-cisco-secure-firewall-asa-and-ftd-ospf-dos-via-insufficient-input</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20021-cisco-secure-firewall-asa-and-ftd-ospf-protocol-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20020-cisco-secure-firewall-asa-and-ftd-ospf-buffer-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20016-cisco-secure-firewall-asa-and-ftd-command-injection-in-fxos-cli</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0847-nltk-path-traversal-in-corpusreader-classes</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32002-openclaw-image-tool-sandbox-bypass-exfiltrating-out-of-workspace</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32019-openclaw-has-incomplete-ipv4-special-use-ssrf-blocking-in-web</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-agent-avatar-symlink-traversal-e2d42f9d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-elevated-allowfrom-authorization-bypass-in-sender-matching-7096959e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-ssrf-guard-bypass-via-ipv6-isatap-71eacc2d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32005-openclaw-authorization-bypass-in-slack-interactive-callbacks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28343-ckeditor-5-cross-site-scripting-in-html-support</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-68467-dark-reader-local-web-server-stylesheet-request</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20106-cisco-secure-firewall-asa-and-ftd-ssl-vpn-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20105-cisco-secure-firewall-asa-and-ftd-remote-access-ssl-vpn-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20103-cisco-secure-firewall-asa-and-ftd-remote-access-ssl-vpn-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20102-cisco-secure-firewall-asa-saml-reflected-xss</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20101-cisco-secure-firewall-asa-and-ftd-saml-2-0-sso-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20100-cisco-secure-firewall-asa-and-ftd-remote-access-ssl-vpn-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20079-cisco-secure-firewall-management-center-auth-bypass-in-web</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20073-cisco-secure-firewall-asa-and-ftd-access-control-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20070-cisco-secure-firewall-asa-and-ftd-cross-site-scripting-in-vpn-web</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20069-cisco-asa-and-ftd-request-smuggling-in-vpn-web-services</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20068-cisco-snort-3-detection-engine-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20067-cisco-snort-3-detection-engine-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20066-cisco-snort-3-detection-engine-denial-of-service-in-http</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20065-cisco-snort-3-detection-engine-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20058-cisco-snort-3-vba-decompression-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20057-cisco-snort-3-vba-decompression-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20054-cisco-snort-3-vba-decompression-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20053-cisco-snort-3-vba-decompression-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20052-cisco-secure-firewall-threat-defense-snort-3-memory-management</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20050-cisco-secure-firewall-threat-defense-ssl-decryption-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20049-cisco-secure-firewall-ipsec-gcm-buffer-overflow-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20044-cisco-secure-firewall-management-center-command-injection-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20039-cisco-secure-firewall-asa-and-ftd-vpn-web-server-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20017-cisco-secure-ftd-command-injection-in-cli</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20015-cisco-secure-firewall-asa-and-ftd-ikev2-memory-leak-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20014-cisco-secure-firewall-asa-and-ftd-ikev2-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20013-cisco-secure-firewall-asa-and-ftd-ikev2-memory-leak-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20008-cisco-secure-firewall-asa-and-ftd-lua-code-injection-in-cli</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20007-cisco-secure-firewall-threat-defense-snort-rules-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20006-cisco-secure-firewall-threat-defense-tls-denial-of-service-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20003-cisco-secure-fmc-sql-injection-in-rest-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20002-cisco-secure-fmc-sql-injection-in-web-based-management-interface</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3520-expressjs-multer-denial-of-service-via-uncontrolled-recursion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20005-cisco-snort-3-detection-engine-denial-of-service-in-ssl-handshake</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15558-docker-cli-for-windows-privilege-escalation-via-uncontrolled</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-12801-linux-nfs-utils-privilege-escalation-in-rpc-mountd</loc><lastmod>2026-06-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23238-linux-kernel-reachable-assertion-in-romfs-fill-super</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23236-linux-kernel-smscufx-improper-memory-handling-in-ioctl</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23231-linux-kernel-netfilter-use-after-free-in-nf-tables-addchain</loc><lastmod>2026-06-02</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-66168-apache-activemq-integer-overflow-in-mqtt-packet-decoding</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27446-apache-activemq-artemis-authentication-bypass-in-core-protocol</loc><lastmod>2026-06-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32018-openclaw-s-serialize-sandbox-registry-writes-to-prevent-races-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32001-openclaw-node-role-device-identity-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-authorization-bypass-via-conversation-identifiers-in-commands-f3d71762</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31995-openclaw-windows-lobster-shell-command-injection-in-fallback-path</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-zalo-group-sender-authorization-bypass-c429d30a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-canvas-route-authentication-bypass-in-mixed-trust-deployments-94968a6b</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27622-openexr-heap-out-of-bounds-write-in-compositedeepscanline</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27566-openclaw-exec-allowlist-bypass-via-wrapper-binary-unwrapping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32039-openclaw-authorization-bypass-in-toolsbysender-policy-matching</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32050-openclaw-authorization-bypass-in-signal-reaction-event-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27523-openclaw-sandbox-bind-validation-bypass-via-symlink-parent</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-symlink-traversal-in-zip-extraction-fe7c81f7</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28449-openclaw-nextcloud-talk-webhook-replay-in-message-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-tools-exec-safebins-interpreter-payload-execution-in-allowlist-465eac3a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31998-openclaw-synology-chat-authorization-bypass-in-dmpolicy-allowlist</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32897-openclaw-gateway-auth-token-reuse-in-prompt-hashing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-hook-transform-symlink-escape-in-path-containment-c48eb933</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32010-openclaw-allowlist-bypass-in-sort-via-compress-program</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32006-openclaw-authorization-bypass-in-bluebubbles-group-allowlist</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-voice-call-twilio-replay-detection-bypass-7702e989</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-dockerfile-privilege-escalation-via-root-execution-8285f4ad</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-exec-allowlist-policy-runtime-mismatch-via-env-s-wrapper-f5527f56</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-microsoft-teams-media-fetch-ssrf-bypass-7ed6ed0a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32025-openclaw-browser-origin-websocket-auth-bypass-via-loopback</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32029-openclaw-ip-spoofing-via-improper-x-forwarded-for-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2590-improper-enforcement-of-the-disable-password-saving-in-vaults</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-non-default-autoallowskills-authorization-bypass-f7e40ca9</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32056-openclaw-shell-startup-environment-injection-in-system-run</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27524-openclaw-prototype-pollution-in-runtime-debug-override</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32033-openclaw-path-traversal-via-prefixed-absolute-paths</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-bash-env-env-shell-startup-file-injection-9170cbc5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-stored-xss-in-exported-session-html-viewer-2d771d64</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-sandbox-media-path-traversal-via-symlink-fallback-5f71a431</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32015-openclaw-tools-exec-safebins-path-hijacking-allowlist-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32063-openclaw-command-injection-in-systemd-unit-generation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32057-openclaw-control-ui-pairing-bypass-in-trusted-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22174-openclaw-gateway-token-disclosure-in-chrome-cdp-probe</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22176-openclaw-command-injection-in-windows-scheduled-task-script</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-discord-allowfrom-slug-collision-authorization-bypass-21e20783</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32034-openclaw-authentication-bypass-in-control-ui-over-http</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-ipv6-multicast-ssrf-classifier-bypass-a38ce5ae</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32017-openclaw-allowlist-bypass-via-short-option-in-safebins-policy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-auth-inconsistency-in-browser-extension-relay-7d1c518a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32021-openclaw-feishu-allowfrom-authorization-bypass-via-display-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22179-openclaw-macos-system-run-allowlist-bypass-via-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-shell-environment-command-injection-via-untrusted-startup-493b98a6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-plugin-runtime-command-execution-trust-boundary-clarification-50a5161e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32042-openclaw-unpaired-device-identity-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32008-openclaw-browser-navigation-guard-file-access-in-authenticated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31994-openclaw-windows-scheduled-task-command-injection-via-unsafe</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32007-openclaw-experimental-apply-patch-sandbox-bypass-via-workspace</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-ms-teams-file-consent-authorization-bypass-0407bb6d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-incorrect-authorization-in-gateway-tool-access-checks-49f2f332</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-insecure-scp-handling-in-imessage-remote-attachments-2623b457</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32009-openclaw-safebins-allowlist-bypass-via-writable-default</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32044-openclaw-tar-bz2-extraction-bypasses-archive-safety-checks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32035-openclaw-discord-voice-transcript-owner-flag-omission-could</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-sandbox-bypass-in-acp-runtime-initialization-7143b264</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3484-phialsbasement-nmap-mcp-server-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32004-openclaw-encoded-path-auth-bypass-in-api-channels</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32028-openclaw-incorrect-authorization-for-discord-and-slack-dm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27670-openclaw-zip-extraction-race-condition-via-parent-symlink-rebind</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22180-openclaw-path-confinement-bypass-in-browser-output-and-install</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22181-openclaw-web-tools-dns-pinning-bypass-via-environment-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29608-openclaw-node-system-run-approval-hardening-wrapper-semantic</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-ssrf-via-camera-url-host-binding-bypass-9823cf19</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32011-openclaw-pre-auth-webhook-dos-via-slow-request-body-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31990-openclaw-stagesandboxmedia-symlink-traversal-file-overwrite</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28401-nocodb-stored-cross-site-scripting-in-rich-text-cells</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28397-nocodb-stored-cross-site-scripting-in-comments</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28399-nocodb-sql-injection-in-dateadd-formula</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28398-nocodb-stored-cross-site-scripting-in-comments-and-rich-text</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3494-mariadb-and-amazon-rds-audit-log-bypass-via-sql-comment-prefixing</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29022-dr-libs-dr-wav-h-heap-buffer-overflow-in-drwav-read-smpl-to</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-36364-ibm-devops-plan-sensitive-information-disclosure-in-web-cache</loc><lastmod>2026-07-27</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-36363-ibm-devops-plan-brute-force-vulnerability-in-authentication</loc><lastmod>2026-07-27</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29053-ghost-remote-code-execution-via-malicious-themes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32030-openclaw-path-traversal-in-imessage-attachment-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32061-openclaw-arbitrary-file-read-via-include-directive</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28460-openclaw-system-run-allowlist-bypass-via-shell-line-continuation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22177-openclaw-environment-variable-injection-in-config-startup</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32032-openclaw-untrusted-shell-environment-variable-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-tools-exec-safebins-binary-shadowing-in-allowlist-mode-7db3eb56</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32899-openclaw-authorization-bypass-in-slack-reaction-pin-event</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32052-openclaw-system-run-shell-wrapper-command-injection-via-hidden</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32043-openclaw-system-run-approval-toctou-via-mutable-symlink-cwd</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32064-openclaw-missing-vnc-authentication-in-sandbox-browser-novnc</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32027-openclaw-dm-pairing-store-identities-bypass-group-allowlist</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32023-openclaw-dispatch-wrapper-depth-cap-mismatch-approval-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32053-openclaw-webhook-replay-bypass-via-randomized-event-id</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-telegram-access-control-bypass-in-media-download-d1278f7a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-native-prompt-image-auto-load-workspace-bypass-8fd1521d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22169-openclaw-safebins-sort-configuration-bypass-of-allowlist-approval</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32036-openclaw-gateway-plugin-auth-bypass-via-encoded-dot-segment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32045-openclaw-gateway-tokenless-tailscale-auth-bypass-in-http-routes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22171-openclaw-path-traversal-in-feishu-media-temp-file-naming</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15599-dompurify-cross-site-scripting-in-textarea-rawtext-element</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0540-dompurify-cross-site-scripting-in-attribute-sanitization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32040-openclaw-html-injection-in-session-exporter-via-image-mime-type</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3437-portwell-engineering-toolkits-memory-buffer-vulnerability-in</loc><lastmod>2026-06-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-63912-cohesity-tranzman-migration-appliance-release-4-0-build-14614-was</loc><lastmod>2026-05-10</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32026-openclaw-path-traversal-in-sandbox-media-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32046-openclaw-chrome-no-sandbox-disabled-os-level-browser-sandbox</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32037-openclaw-msteams-attachment-redirect-bypass-of-media-host</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28393-openclaw-hook-transform-path-traversal-and-module-loading</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32000-openclaw-command-injection-in-lobster-tool-execution-on-windows</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-telegram-message-reaction-authorization-bypass-444a2dce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31992-openclaw-allowlist-exec-guard-bypass-via-env-s</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28222-wagtail-stored-xss-in-tableblock-class-attributes</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27601-underscore-unlimited-recursion-in-flatten-and-isequal-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-62817-samsung-exynos-mobile-processor-null-pointer-dereference-in-npu</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28518-volcengine-openviking-path-traversal-in-ovpack-import</loc><lastmod>2026-07-14</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25673-django-denial-of-service-in-urlfield-via-unicode-normalization-on</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3344-watchguard-fireware-os-filesystem-integrity-check-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3343-watchguard-fireware-os-reflected-xss-in-web-ui</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-59060-apache-ranger-nifiregistryclient-hostname-verification-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3455-mailparser-cross-site-scripting-in-texttohtml-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3449-tootallnate-tootallnate-once-promise-hang-in-abortsignal-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20801-gallagher-nxwitness-and-hanwha-vms-cleartext-transmission-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20757-gallagher-command-centre-server-improper-locking-in-morpho</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-47147-gallagher-command-centre-mobile-client-cleartext-storage-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32016-openclaw-macos-allowlist-basename-matching-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32003-openclaw-rce-via-environment-variable-injection-in-system-run</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32014-openclaw-node-reconnect-metadata-spoofing-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-hook-auth-rate-limiter-bypass-via-ipv4-mapped-ipv6-80c182c4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32024-openclaw-avatar-symlink-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21385-qualcomm-multiple-chipsets-memory-corruption-in-memory-allocation</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22719-broadcom-vmware-aria-operations-command-injection-during</loc><lastmod>2026-05-15</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32038-openclaw-sandbox-network-isolation-bypass-via-docker-network</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27545-openclaw-node-system-run-approval-bypass-via-parent-symlink-cwd</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27522-openclaw-attachment-hydration-path-traversal-with-unset</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32065-openclaw-system-run-approval-identity-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-gateway-tool-escalation-and-acp-permission-auto-approval-fe35d559</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28466-openclaw-remote-code-execution-via-approval-bypass-in-gateway</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28486-openclaw-path-traversal-in-archive-extraction</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28457-openclaw-path-traversal-in-sandbox-skill-mirroring</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28464-openclaw-non-constant-time-token-comparison-in-hooks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28475-openclaw-timing-attack-in-hook-token-verification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28453-openclaw-path-traversal-in-tar-archive-extraction</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32013-openclaw-gateway-agents-files-symlink-escape-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32058-openclaw-node-system-run-approval-context-binding-weakness</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32049-openclaw-inbound-media-download-byte-limit-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22175-openclaw-exec-allow-always-allowlist-bypass-via-multiplexer-shell</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-node-exec-approval-replay-across-nodes-6ca163c5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-29607-openclaw-allow-always-wrapper-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32020-openclaw-control-ui-symlink-based-path-traversal-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32054-openclaw-symlink-traversal-in-browser-trace-and-download-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22178-openclaw-redos-and-regex-injection-via-unescaped-feishu-mention</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31993-openclaw-macos-companion-allowlist-parsing-bypass-in-system-run</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3338-aws-aws-lc-signature-verification-bypass-in-pkcs7-verify</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-3336-aws-aws-lc-certificate-chain-validation-bypass-in-pkcs7-verify</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-22168-openclaw-windows-command-injection-via-cmd-exe-c-trailing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31991-openclaw-signal-group-allowlist-authorization-bypass-via-dm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/keep-network-tbtc-v2-protocol-insolvency-in-deposit-validation-6ebaed20</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31997-openclaw-system-run-approval-executable-rebind-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31989-openclaw-web-search-citation-redirect-ssrf</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32051-openclaw-authorization-bypass-in-agent-runs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-sandbox-media-toctou-race-condition-allows-file-reads-outside-f3765576</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-toctou-symlink-race-in-writefilewithinroot-c698620c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-31999-cpenclaw-acpx-windows-wrapper-shell-fallback-cwd-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-unauthorized-sender-bypass-in-stop-triggers-and-models-command-8c7f288e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32048-openclaw-sandbox-escape-in-cross-agent-sessions-spawn</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28461-openclaw-unbounded-memory-growth-in-zalo-webhook-via-query-string</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-unicode-canonicalization-drift-in-node-metadata-policy-e118eaea</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32041-openclaw-browser-control-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28794-orpc-client-prototype-pollution-via-standardrpcjsonserializer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27971-qwik-remote-code-execution-via-server-deserialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28787-oneuptime-webauthn-2fa-bypass-via-client-supplied-challenge</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28413-plone-products-isurlinportal-open-redirect-via-multiple-forward</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28361-nocodb-missing-ownership-validation-in-mcp-token-operations</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28396-nocodb-refresh-token-not-revoked-on-password-reset</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28360-nocodb-plaintext-storage-of-shared-view-passwords</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28359-nocodb-stored-cross-site-scripting-in-rich-text-field</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28358-nocodb-user-enumeration-in-password-reset-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28357-nocodb-stored-cross-site-scripting-in-formula-cell</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0013-android-documentsui-confused-deputy-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0012-android-framework-contact-name-leak-in-notification-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0011-google-android-privilege-escalation-in-settings-java</loc><lastmod>2026-07-29</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0010-google-android-out-of-bounds-write-in-drm-manager-service</loc><lastmod>2026-07-28</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0008-android-faceenroll-confused-deputy-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-0689-extreme-networks-extremecloud-iq-site-engine-credential-exposure</loc><lastmod>2026-06-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-23600-hpe-autopass-license-server-remote-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-2584-ciser-system-csip-firmware-sql-injection-in-authentication-module</loc><lastmod>2026-05-19</lastmod></url>
  <url><loc>https://junglewise.ai/threats/open-babel-null-pointer-dereference-in-cdxml-file-handler-5a967b79</loc><lastmod>2026-06-30</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28416-gradio-ssrf-via-malicious-proxy-url-in-gr-load</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28415-gradio-open-redirect-in-oauth-flow</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28414-gradio-absolute-path-traversal-on-windows-with-python-3-13</loc><lastmod>2026-09-26</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-27167-gradio-credential-leak-via-mocked-oauth-and-hardcoded-session</loc><lastmod>2026-09-26</lastmod></url>
</urlset>
