<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url><loc>https://junglewise.ai/threats/cve-2026-57179-python-social-auth-social-auth-core-session-fixation-in-partial</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57178-python-social-auth-social-core-vk-app-backend-auth-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57177-python-social-auth-social-core-login-csrf-in-loginradius-backend</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57176-python-social-auth-social-core-account-takeover-in-vend-backend</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57175-python-social-auth-social-auth-core-saml-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61815-zbateson-mail-mime-parser-crlf-header-injection-in-attachment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61816-zbateson-mail-mime-parser-uncontrolled-resource-consumption-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59980-hpack-unbounded-variable-integer-decoding-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61782-rsdoctor-rspack-plugin-unauthenticated-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61788-bytebase-dbhub-read-only-mode-bypass-via-function-calls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61742-dbhub-http-transport-dns-rebinding-allows-unauthenticated-sql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61741-http4s-scala-xml-xxe-vulnerability-in-entitydecoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61784-xhtml-purifier-attribute-injection-sanitizer-bypass-leading-to</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56744-bsv-wallet-toolbox-storage-output-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56738-phpmyfaq-sql-injection-in-stopwords-add</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56737-phpmyfaq-two-factor-authentication-password-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56736-phpmyfaq-stored-xss-in-admin-faq-editor-via-html-entity-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/langchain-nvidia-local-file-disclosure-through-vlm-image-inputs-2ea392d6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61604-ixo-blockchain-x-bonds-did-resolved-payer-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61732-decepticon-role-boundary-forgery-via-chatml-special-token</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-96883-aws-pgcollection-type-confusion-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/virustotal-yara-x-unvalidated-deserialization-in-rules-deserialize-d5769253</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63498-snipe-it-stored-xss-via-inline-xml-rendering-in-uploaded-files</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85056-zitadel-login-v2-mfa-bypass-via-session-reuse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85057-zitadel-actions-v1-sandbox-escape-via-require-filesystem-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62368-snipe-it-stored-xss-in-custom-field-names</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62286-dozzle-label-filter-bypass-in-events-stream</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63493-snipe-it-2fa-bypass-via-api-token-flow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19730-podman-quadlet-install-incomplete-file-truncation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59167-suneditor-xss-vulnerability-in-sanitizer-with-namespaced-tags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62998-redaxo-rex-list-unwhitelisted-order-by-column-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93289-eufy-omni-c20-and-x10-pro-os-command-injection-and-certificate</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84399-botslab-g980h-dashcam-multiple-authentication-and-authorization</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5430-wso2-api-control-plane-path-traversal-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71362-adobe-commerce-and-magento-incorrect-authorization</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61685-reactpress-sql-injection-via-dynamic-column-names-in-typeorm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/plone-plone-app-contenttypes-denial-of-service-via-excessive-filename-c46fb307</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57576-plone-plone-app-dexterity-denial-of-service-via-excessive-field</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77394-openc3-cosmos-stored-cross-user-xss-in-button-widget</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82407-klever-go-bls-public-key-validation-bypass-in-validator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82409-klever-go-elasticsearch-injection-via-account-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82406-klever-go-marketplace-buy-missing-isclaimed-guard</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76089-verbb-formie-missing-authorization-on-sent-notification-resend</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61814-typelevel-jawn-asyncparser-quadratic-parsing-effort-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59990-jawn-json-parser-denial-of-service-via-uncontrolled-nesting-depth</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82405-klever-go-account-takeover-via-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86065-klever-go-unauthenticated-websocket-subscribe-remote-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86064-klever-go-log-endpoint-unauthenticated-logging-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93421-google-mesop-unauthenticated-ansi-escape-sequence-injection-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77602-openc3-cosmos-authenticated-remote-code-execution-via-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77601-openc3-cosmos-authenticated-os-command-injection-via-pypi-url</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61695-square-wire-swift-runtime-negative-length-in-skipgroup-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76087-verbb-formie-unauthenticated-submission-hijacking-via-submit</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76086-craft-formie-integration-form-settings-ssrf-and-credential</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92692-sulu-jcr-sql2-injection-in-category-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77421-jline-nano-editor-redos-in-regex-search-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77422-jline-redos-in-built-in-grep-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77420-jline-history-ignore-redos-via-unescaped-regex-metacharacters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85724-moquette-mqtt-broker-pattern-acl-wildcard-injection-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73858-solspace-freeform-twig-template-injection-via-form-field-values</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88974-wpgraphql-authorization-bypass-in-updatepost-mutation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63000-redaxo-missing-csrf-protection-on-package-update</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63002-redaxo-stored-xss-in-mediapool-sync-page-via-unescaped-filenames</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63001-redaxo-media-manager-stored-xss-in-type-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61541-zapros-unbounded-content-encoding-decompression-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61652-zapros-decompression-bomb-in-streaming-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57149-plone-plone-app-portlets-tales-injection-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/third-party-ics-integrators-supply-chain-risk-to-critical-90b78f9a</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91130-home-assistant-statistics-graph-card-xss-via-entity-names</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91129-home-assistant-server-side-request-forgery-in-mdns-ipp</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88010-traefik-basicauth-singleflight-username-enumeration-via-timing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88978-hatchet-durabletask-workerstatus-grpc-authorization-bypass-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84298-hatchet-cross-tenant-durable-callback-payload-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79913-cloudreve-ssrf-guard-bypass-via-ipv6-transition-wrappers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79767-gardener-authorization-bypass-via-group-subject-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77637-cloudreve-privilege-scope-bypass-in-admin-api-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77633-cloudreve-toctou-race-in-storage-quota-check-and-charge</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-94462-spree-store-api-broken-access-control-in-cart-association</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86062-lightrag-webui-stored-xss-in-chat-answer-renderer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85740-lightrag-ssrf-via-ipv6-transition-address-bypass-in-markdown</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85734-lightrag-hku-login-endpoint-missing-rate-limiting-enables-brute</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85725-lightrag-plaintext-password-timing-attack-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85709-lightrag-api-sensitive-information-exposure-in-error-responses</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83805-nautobot-authorization-bypass-in-approval-workflow-rest-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83801-nautobot-stored-cross-site-scripting-in-form-help-text</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77528-autobahn-python-permessage-deflate-decompression-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76805-nuclei-environment-variable-disclosure-in-dast-fuzz-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76804-projectdiscovery-nuclei-security-gate-bypass-via-workflow-file</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76803-projectdiscovery-nuclei-local-file-read-via-mysql-sandbox-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76802-projectdiscovery-nuclei-arbitrary-command-execution-in-dast</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76819-projectdiscovery-nuclei-arbitrary-code-execution-via-goja</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77561-tinyauth-denial-of-service-via-login-attempt-map-saturation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77560-tinyauth-forward-auth-authorization-bypass-via-case-sensitive-acl</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77582-tinyauth-user-enumeration-via-timing-oracle</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62371-kubeedge-command-injection-in-nodeupgradejob-via-v1alpha2-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62370-kubeedge-cloudhub-unbounded-buffer-allocation-in-viaduct-packer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62369-kubeedge-keadm-path-traversal-in-decompresstargz</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63131-openbao-authorization-bypass-in-policy-enforcement-for-list</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63132-openbao-recovery-mode-timing-attack-token-leakage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71543-openbao-templated-policies-privilege-escalation-via-wildcard</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77285-openbao-agent-information-disclosure-via-stdout-in-exec-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62182-kubeedge-configupdatejob-command-injection-in-updatefields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77426-unleash-admin-api-missing-await-on-permission-check-and-cross</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77425-unleash-authorization-bypass-in-strategy-reordering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77250-mcp-atlassian-oauth-fallback-token-storage-plaintext-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77249-atlassian-mcp-jira-user-permission-lookup-ssrf-via-unvalidated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77247-sooperset-mcp-atlassian-arbitrary-file-upload-to-jira-confluence</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77244-mcp-atlassian-authentication-bypass-in-http-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77274-atlassian-mcp-ssrf-protection-bypass-via-url-parser-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77271-atlassian-mcp-path-traversal-bypass-leading-to-rce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77267-mcp-atlassian-incomplete-ssrf-remediation-in-url-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77272-atlassian-mcp-reflected-xss-in-oauth-setup-callback-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77262-sooperset-mcp-atlassian-path-traversal-in-confluence-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77268-atlassian-mcp-insecure-oauth-token-file-permissions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77259-mcp-atlassian-arbitrary-file-read-via-confluence-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77261-mcp-atlassian-ssrf-protection-bypass-in-basic-auth-and-oauth</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77270-atlassian-mcp-arbitrary-file-read-via-upload-attachment-tools</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77265-atlassian-mcp-server-ssrf-via-dns-rebinding-in-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77266-mcp-atlassian-path-traversal-in-upload-attachment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77269-atlassian-mcp-path-traversal-in-upload-attachment-allows</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77260-atlassian-mcp-server-arbitrary-file-read-via-unconstrained-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77257-sooperset-mcp-atlassian-arbitrary-local-file-read-in-http-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77243-mcp-atlassian-tool-authorization-bypass-in-tools-call</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77255-atlassian-mcp-arbitrary-file-read-via-path-traversal-in-update</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77253-mcp-atlassian-arbitrary-file-read-in-attachment-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77251-mcp-atlassian-jql-cql-filter-bypass-in-jira-and-confluence-search</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77246-mcp-atlassian-http-server-local-file-exfiltration-via-unvalidated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77248-atlassian-mcp-unauthenticated-arbitrary-file-read-in-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76910-unleash-feature-toggle-authorization-bypass-in-clone-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76909-unleash-change-request-approval-email-html-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75510-novu-stored-xss-in-in-app-inbox-via-javascript-scheme-in-redirect</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69190-graylog-privilege-escalation-in-saved-searches-and-dashboards-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77322-sipgo-dos-via-unvalidated-websocket-frame-length</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65829-mpxj-path-traversal-in-primavera-p3-prx-and-suretrak-stx-readers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61570-mpxj-xxe-vulnerability-in-merlinreader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62987-fabio-incomplete-fix-for-hop-by-hop-header-stripping-in-trust</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63628-mppx-gas-draining-via-eip-2930-access-list</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63627-mppx-gas-draining-via-calldata-padding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63342-hatchet-authorization-bypass-in-durable-task-event-log-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61681-hatchet-ssrf-in-sns-unsubscribeconfirmation-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62364-weblate-wlc-api-token-disclosure-in-project-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58268-sipgo-dos-via-unvalidated-content-length-in-stream-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63116-deepstream-patch-multi-permission-bypass-in-valve-access-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62985-request-filtering-agent-unhandled-synchronous-exception-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62866-dasel-selector-lexer-panic-on-trailing-whitespace</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59168-dasel-unbounded-recursion-in-json-and-xml-readers-causes-stack</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62282-opencve-server-side-request-forgery-in-notifications</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59991-psd-tools-uncontrolled-memory-allocation-in-composite-numpy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61670-microsandbox-information-disclosure-in-process-arguments</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-94384-amazon-connect-salesforce-lambda-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56682-9router-login-brute-force-lockout-bypass-via-spoofable-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56681-9router-authentication-bypass-in-public-llm-api-via-spoofable-x</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61612-aborruso-ckan-mcp-server-ssrf-via-dns-name-resolution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58272-sync-in-server-username-enumeration-via-timing-side-channel-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58270-sync-in-server-redos-via-unsanitized-regex-in-pathfilters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58269-sync-in-server-two-factor-authentication-bypass-in-token-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58271-sync-in-server-totp-brute-force-in-sync-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61647-roomi-fields-notebooklm-mcp-path-traversal-in-vault-batch-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89207-siemens-wtv676-and-wtv776-denial-of-service-via-input-validation</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-50093-siemens-siveillance-control-arbitrary-file-upload-in-ois-web</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67367-siemens-simove-fleetmanager-and-siplant-path-traversal</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87121-lwip-tcp-ip-stack-mqtt-client-application-out-of-bounds-write</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34223-siemens-desigo-cc-code-injection-in-graphics-documents</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88020-openplc-runtime-v3-cross-site-scripting-in-web-interface</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91018-lwip-double-free-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-94127-f5-big-ip-apm-heap-based-buffer-overflow</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93952-arista-velocloud-orchestrator-improper-input-validation</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93616-check-point-multiple-products-path-traversal-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85102-check-point-security-gateway-and-spark-firewall-improper</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61628-nginx-ignition-unauthenticated-admin-account-creation-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61629-nginx-ignition-i18n-middleware-cpu-amplification-via-accept</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61630-nginx-ignition-totp-reuse-during-validity-window</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/falco-k8saudit-detection-bypass-for-privileged-init-and-ephemeral-7788502d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61687-hatchet-oauth-state-csrf-via-empty-state-collision</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/obot-server-side-request-forgery-via-remote-mcp-server-url-8f4d0bee</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/obot-mcp-registry-api-authentication-bypass-7d5ec1f3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/obot-oauth-dynamic-client-registration-token-theft-via-audience-62f98039</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71537-paymenter-credit-refund-double-spend-race-condition-in-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85058-moquette-mqtt-broker-authorization-bypass-in-will-message</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59163-mnemosyne-jwt-signature-verification-bypass-in-sync-server</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63445-perses-filesystem-path-traversal-via-unvalidated-project</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63199-perses-missing-authorization-in-datasource-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63458-perses-project-query-parameter-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91127-file-viewer-dom-xss-via-unsafe-hyperlink-schemes-in-legacy-doc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77301-adm-zip-uncontrolled-memory-allocation-via-uncompressed-size</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77339-f1bonacc1-process-compose-dns-rebinding-in-mcp-sse-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81505-convoy-cross-tenant-source-idor-leaks-broker-credentials</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84992-md-editor-v3-cross-site-scripting-in-code-fence-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63406-anycable-hardcoded-telemetry-auth-token-and-credential-leak</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63349-anyio-run-process-open-process-privilege-dropping-bug-with-extra</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63374-anyio-tlsstream-idna-2003-host-name-encoding-certificate-spoofing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64847-anyio-process-pool-workers-indefinite-blocking-on-undrained</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63405-anycable-pusher-rest-api-request-body-md5-verification-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58197-toolhive-containerized-mcp-servers-host-service-access-via-host</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61682-kcp-front-proxy-header-injection-and-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61833-zot-registry-bearer-authentication-delete-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61795-capsule-hostnameregexhandler-parameter-order-bypass-in-webhook</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61672-capsule-forbidden-namespace-service-node-label-and-annotation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61794-capsule-tenant-forbiddenannotations-regex-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/lmdeploy-ssrf-bypass-in-url-validation-f10a8d23</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33625-lmdeploy-arbitrary-code-execution-via-eval-of-untrusted-quant</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-66455-lmdeploy-remote-code-execution-via-pickle-deserialization-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/semantic-mediawiki-missing-authorization-in-smwtask-api-module-37615b77</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/semantic-mediawiki-special-facetedsearch-reflected-xss-via-cstate-15c1ff89</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77616-semantic-mediawiki-reflected-xss-in-special-ask-cursor-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77610-semantic-mediawiki-query-debug-output-xss-in-debugformatter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77609-semantic-mediawiki-open-redirect-in-special-uriresolver</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77607-semantic-mediawiki-reflected-xss-in-special-ask-separator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77608-semantic-mediawiki-reflected-xss-in-searchbyproperty</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77606-semantic-mediawiki-reflected-xss-in-special-ask-plain-table</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61682-semantic-mediawiki-stored-xss-through-wikitext-data-attributes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-53837-xwiki-xwiki-rendering-xml-eval-injection-via-html-macro-escaping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77615-opencast-paella-player-stored-xss-in-webvtt-dfxp-caption-cues</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72819-grav-cms-remote-code-execution-via-zip-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75827-grav-blueprint-bare-function-arbitrary-file-write-via-error-log</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75828-grav-stored-xss-in-xss-detector-via-unpaired-quote-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74907-grav-path-traversal-in-static-asset-server</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86003-coredns-rfc-2136-update-bypass-in-doh-doq-grpc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86000-soup-sieve-redos-in-identifier-and-value-selector-patterns</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85999-soup-sieve-polynomial-time-redos-in-whitespace-trimming-regex</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88976-plate-html-deserialization-xss-via-browser-parsing-behavior</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84997-reactphp-http-denial-of-service-in-chunked-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82399-coredns-unauthenticated-memory-exhaustion-in-doh-doq-and-doh3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81876-hapi-fhir-shcparser-deflate-infinite-loop-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81875-hapi-fhir-shcparser-unbounded-deflate-decompression-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/djust-template-xss-via-inherited-context-safety-grant-eaaae5cf</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/djust-six-template-auto-escaping-bypass-xss-fc506972</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81871-opentelemetry-go-otlp-log-grpc-exporter-tls-certificate</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81870-opentelemetry-go-endpoint-url-logging-in-tracerprovider</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81868-steeltoe-certificate-authorization-header-spoofing-via-missing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81516-steeltoe-discovery-consul-malformed-secure-metadata-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81515-steeltoe-eureka-discovery-client-denial-of-service-via-malformed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86049-jupyter-server-token-leakage-in-5xx-error-logs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81176-svelte-devalue-dos-via-malformed-input</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79752-cakephp-functionsbuilder-sql-injection-in-multiple-methods</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-45140-chamilo-lms-cstudio-upload-flow-unauthenticated-remote-code</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92943-aws-iot-device-sdk-for-python-certificate-host-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68537-fulgur-non-painting-replaced-elements-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68523-fulgur-unbounded-page-slicing-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86039-libp2p-peerstore-peer-id-spoofing-in-signed-records</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75523-steeltoe-management-endpoint-httpexchanges-query-string-secret</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75831-grav-stored-xss-via-markdown-audio-video-source-url</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86038-libp2p-gossipsub-message-authentication-bypass-in-rsa-peer-ids</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72832-grav-stored-xss-via-quoted-attribute-bypass-in-detectxss</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85717-asynchttpclient-credential-leak-on-cross-origin-redirect</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85720-asynchttpclient-credentials-exposure-in-plaintext-connect-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85721-asynchttpclient-unbounded-http-1-1-response-decompression-denial</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85716-asynchttpclient-scram-and-digest-mutual-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85756-ssh-net-scpclient-remote-code-execution-via-unquoted-scp-paths</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69147-vllm-request-selected-pynvvideocodec-gpu-decode-bypasses-vram</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69089-grav-cms-path-traversal-in-imagemedium-watermark</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69088-grav-cms-incomplete-callable-validation-in-blueprint-dynamic</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85732-oras-go-blind-ssrf-via-unvalidated-link-header-in-pagination</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85731-oras-go-arbitrary-file-write-via-symlink-chain-bypass-in-tar</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86043-skipper-opa-body-authz-bypass-in-chunked-http-2-requests</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77412-rabbitmq-amqp091-go-denial-of-service-via-malicious-field-length</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77411-rabbitmq-amqp091-go-protocol-desynchronization-via-integer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77410-rabbitmq-amqp091-go-resource-exhaustion-via-unbounded-buffer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77408-rabbitmq-amqp091-go-silent-data-truncation-via-shortstr-integer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77407-rabbitmq-amqp091-go-plaintext-credential-exposure-in-plain-auth</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77406-rabbitmq-amqp091-go-resource-exhaustion-via-signed-to-unsigned</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77405-rabbitmq-amqp091-go-missing-tls-minimum-version-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77404-rabbitmq-amqp091-go-connection-configuration-injection-via-tls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77403-rabbitmq-amqp091-go-denial-of-service-in-frame-size-negotiation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86071-junrar-localfolderextractor-path-traversal-via-intermediate</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77401-zope-accesscontrol-information-disclosure-via-string-format</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76825-restrictedpython-sandbox-escape-via-string-formatter-field</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85715-exifreader-denial-of-service-via-crafted-heic-avif-iloc-box</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61700-mariadb-connector-j-allowlocalinfile-bypass-in-local-infile</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69197-umbraco-delivery-api-authorization-bypass-in-content-reference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85078-sanic-http-chunked-trailer-request-smuggling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63506-tinacms-auth-broken-access-control-in-isauthorized</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63225-redocly-cli-path-traversal-in-split-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82410-pocketbase-unhandled-panic-in-worker-goroutines</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62949-asyncssh-event-loop-infinite-loop-via-zero-maximum-packet-size</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63126-wire-protobuf-decoder-integer-overflow-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77360-orpc-vary-header-injection-in-cors-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75516-rabbitmq-java-client-frame-level-oom-via-math-min-with-unlimited</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75513-marten-linq-provider-sql-injection-via-unescaped-string-literals</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59823-litellm-proxy-server-side-request-forgery-in-user-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71538-cyclonedx-cyclonedx-npm-shell-injection-in-workspace-argument-on</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63472-vendure-account-takeover-in-external-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63461-vendure-shop-api-authorization-bypass-via-filteroperator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63460-vendure-unauthenticated-redos-in-regex-filter-on-sqlite</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63459-vendure-dashboard-stored-xss-in-richtextdescriptioncell</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61793-nuxt-og-image-unauthenticated-ssrf-in-font-url-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64684-model-context-protocol-rust-sdk-custom-header-leak-on-cross</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13348-schneider-electric-powerchute-serial-shutdown-improper</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-6625-schneider-electric-modicon-m340-improper-input-validation-in-ftp</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-15688-mitsubishi-electric-gx-works3-authentication-bypass-in-block</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86520-bransys-eld-hardcoded-credentials-and-cleartext-transmission</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-4872-hitachi-energy-facts-control-platform-multiple-vulnerabilities-in</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13336-schneider-electric-netbotz-5-750-755-os-command-injection-and-sql</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61709-openfga-listusers-incorrect-authorization-in-intersection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63671-nuxtjs-mdc-url-sanitizer-bypass-via-svg-xlink-href-and-data</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63128-rmcp-streamable-http-server-unauthenticated-session-table-memory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63127-rmcp-missing-resource-field-validation-in-oauth-metadata</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57173-vllm-unauthenticated-audio-decompression-bomb-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61599-djust-unauthenticated-arbitrary-module-import-in-websocket-sse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61589-djust-host-header-omission-in-websocket-tenant-resolution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61596-djust-broken-object-level-access-control-idor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61588-djust-django-model-serialization-sensitive-data-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61594-djust-authorization-bypass-on-websocket-sse-mount-path</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61591-djust-state-snapshot-state-injection-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61592-djust-sse-session-hijacking-via-client-chosen-session-id</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61597-djust-stored-reflected-xss-via-javascript-urls-in-component-tags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86831-amazon-eks-aws-network-policy-agent-cross-namespace-networkpolicy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68904-node-opcua-tcp-socket-leak-in-keepalive-reconnection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61593-djust-server-sent-events-cross-site-request-forgery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-59953-lmdeploy-remote-code-execution-via-pickle-deserialization-in-zmq</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61595-djust-multi-tenant-isolation-bypass-on-websocket-sse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61598-djust-mass-assignment-of-arbitrary-view-attributes-in-update</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81192-opentelemetry-resources-host-path-hijacking-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61590-djust-observability-endpoints-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61560-zereight-mcp-gitlab-unauthenticated-arbitrary-file-read-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cisa-cyber-decoys-guidance-for-detection-and-response-4396c45f</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58704-google-pixel-improper-authorization-in-cellular-modem</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76460-cisco-identity-services-engine-incorrect-privileged-api-use</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87886-acronis-backup-privilege-escalation-in-cpanel-whm-and-plesk</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-15587-google-security-operations-soar-privilege-escalation-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61559-zereight-mcp-gitlab-server-side-request-forgery-in-dynamic-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61568-zereight-mcp-gitlab-dns-rebinding-in-streamable-http-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/zereight-mcp-gitlab-multiple-safety-control-bypasses-fcdfc95d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/zereight-mcp-gitlab-multiple-safety-control-bypasses-6b1d97f3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61554-emp3r0r-http-polling-unauthenticated-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88975-http4s-ember-http-2-frame-buffering-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61544-libp2p-quic-remote-panic-in-quic-handshake-certificate-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69201-http4s-resourceservice-and-webjarservice-path-traversal-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69218-http4s-ember-http-2-unbounded-continuation-frame-accumulation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69216-http4s-ember-chunk-parser-lenience-in-http-request-smuggling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69215-http4s-cookiejar-middleware-cookie-leakage-via-substring-matching</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69214-http4s-cookiejar-middleware-accepts-arbitrary-set-cookie-domain</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69213-http4s-ember-http-2-unbounded-outbound-frame-queue-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69208-http4s-digestauth-memory-exhaustion-via-unbounded-nonce-cache</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69206-http4s-digestauth-replay-attack-in-authorization-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69205-http4s-ember-http-request-smuggling-via-transfer-encoding-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69204-http4s-ember-http-request-smuggling-via-transfer-encoding-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69203-http4s-ember-http-2-stream-limit-enforcement-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69202-http4s-ember-http-2-unbounded-inbound-body-buffering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nezha-oauth2-redirect-uri-host-header-injection-regression-331e924a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32599-netmaker-boolean-based-sql-injection-in-dns-deletion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81861-schneider-electric-scadapack-x70-insufficiently-protected</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76081-zitadel-improper-role-revocation-on-granted-projects</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59178-esphome-device-builder-authentication-bypass-via-silent-env-var</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86830-aws-team-privilege-escalation-in-iam-identity-center</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/october-cms-incomplete-url-scheme-validation-in-image-resizer-f7555212</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-49400-october-cms-php-object-injection-in-widget-session-storage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-46696-october-cms-twig-sandbox-bypass-in-safe-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76461-cisco-secure-email-gateway-sql-injection</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61534-yayson-prototype-pollution-in-store-legacystore-deserialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59973-frontmcp-and-mcp-from-openapi-ssrf-bypass-in-openapi-ref</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56825-shopper-collectionproducts-missing-authorization-on-product</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56830-shopper-media-component-missing-authorization-in-store</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56829-shopper-variantstock-missing-authorization-and-unlocked-property</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56828-shopper-privilege-escalation-via-improper-livewire-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56826-shopper-framework-missing-authorization-in-settings-components</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56831-shopper-framework-negative-discount-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56827-shopper-authorization-bypass-in-filament-bulk-actions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59971-mysql-mcp-server-missing-authentication-and-dns-rebinding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89332-kiro-ide-sensitive-workspace-data-exfiltration-via-agent-written</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89090-aws-sdk-for-go-v2-denial-of-service-in-eventstream-header-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18061-aws-advanced-jdbc-wrapper-xxe-in-remotequerycacheplugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89065-projen-path-traversal-in-file-manifest-cleanup</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84869-connectwise-screenconnect-unauthorized-file-transfer-and</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-42018-jfrog-artifactory-improper-authentication-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85706-gitlab-community-and-enterprise-edition-path-traversal-in-commits</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65107-slurm-sbcast-shared-library-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88006-open-webui-oauth-token-exchange-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88008-traefik-http-request-smuggling-via-unrestricted-protocol-upgrade</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88004-traefik-entrypoint-header-sanitization-bypass-via-request</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88007-traefik-http-3-backend-ntlm-connection-reuse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88009-traefik-rootless-http-1-request-target-routing-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88014-rclone-archive-zip-zip-slip-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88013-rclone-http-backend-header-forwarding-on-redirect</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88016-rclone-directory-metadata-escape-through-symlink-in-links-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88015-rclone-local-symlink-range-header-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88018-rclone-serve-s3-sigv4-signature-bypass-with-auth-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88044-rclone-per-server-auth-proxy-bypass-in-ftp-and-s3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88017-rclone-ftp-cross-session-auth-proxy-backend-confusion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88046-rclone-path-traversal-via-object-name-escaping-on-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88045-rclone-serve-s3-multipart-declared-length-memory-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87011-open-webui-oidc-back-channel-logout-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87012-open-webui-calendar-alert-suppression-via-non-numeric-meta-value</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87013-open-webui-infinite-loop-via-folder-parent-cycle</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87014-open-webui-session-privilege-escalation-through-sso-role-sync</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59965-jhb-software-payload-alt-text-plugin-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59960-argos-ci-core-os-command-injection-in-git-branch-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mistral-rs-unbounded-media-fetch-and-video-frame-extraction-dos-9ec59bbb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mistral-rs-media-loader-ssrf-and-arbitrary-file-read-via-image-url-669bc2df</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87015-open-webui-session-cookie-disclosure-in-tool-servers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87016-open-webui-wildcard-injection-in-oauth-oidc-identity-matching-on</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88062-omniroute-acp-custom-agent-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86073-n8n-oauth-consent-bypass-via-unbound-refresh-token</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86074-n8n-instance-ai-credential-setup-ssrf-via-unvalidated-probe-url</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86995-n8n-git-node-config-bypass-enables-local-repository-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86085-n8n-missing-authorization-in-role-assignment-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86993-n8n-log-streaming-credentials-unauthorized-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86084-n8n-authentication-bypass-via-disabled-oidc-sso-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86080-n8n-github-trigger-cryptographic-signature-verification-fail-open</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86079-n8n-path-injection-in-elasticsearch-and-elasticsecurity-nodes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86078-n8n-prototype-pollution-in-workflow-summary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86994-n8n-missing-authorization-in-active-workflows-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86083-n8n-expression-sandbox-escape-in-legacy-engine-via-json-stringify</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86077-n8n-approval-gate-bypass-via-reused-resumetoken-in-chat-websocket</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88011-traefik-forwardauth-identity-spoofing-via-header-alias</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88012-traefik-readtimeout-not-enforced-on-http-3-connections</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88060-angular-platform-server-ssr-xss-via-unescaped-template-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88056-angular-platform-server-ssrf-via-url-resolution-discrepancy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88059-angular-information-leak-in-httptransfercache-with-hierarchical</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88057-angular-sanitization-bypass-in-directive-host-bindings</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55416-pimcore-sql-injection-in-custom-reports-via-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89049-aws-systems-manager-agent-ssrf-in-session-manager-port-forwarding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85228-aws-deep-java-library-integer-overflow-in-tensor-buffer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86082-n8n-openai-chat-model-domain-restriction-bypass-in-model-search</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86081-n8n-regular-expression-denial-of-service-in-git-node-file-pattern</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86075-n8n-unauthenticated-storage-exhaustion-via-oauth-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86076-n8n-expression-sandbox-escape-via-class-field-sanitizer-rebinding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87017-open-webui-knowledge-tool-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87994-open-webui-message-authorship-bypass-in-channel-completions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87995-open-webui-account-takeover-via-port-preview-iframe-sandbox</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87996-open-webui-ssrf-via-dns-rebinding-in-playwright-web-loader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87997-open-webui-missing-folder-write-access-check-in-chat-completions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87998-open-webui-privilege-escalation-in-external-knowledge-connection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87999-open-webui-server-side-request-forgery-in-url-fetching</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88005-open-webui-oauth-token-exchange-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/eigenpal-docx-editor-css-injection-and-print-time-xss-via-font-family-24c5738e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/eigenpal-docx-editor-react-css-injection-and-xss-via-font-family-name-722ac5b4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84939-apache-freemarker-path-traversal-in-template-loading</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86060-mikrotik-routeros-argument-delimiter-neutralization-privilege</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67277-mikrotik-routeros-missing-authentication-in-btest-service</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88000-open-webui-denial-of-service-via-cyclic-chat-tree-message</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88001-open-webui-server-side-request-forgery-via-unvalidated-http</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88002-open-webui-infinite-loop-denial-of-service-in-chat-history</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59185-identrail-cross-tenant-idor-via-unverified-github-app</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59179-openhop-server-path-traversal-in-flow-id-file-operations</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59177-esphome-device-builder-auth-bypass-via-unrestricted-ingress</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59176-functype-mcp-server-set-functype-version-package-alias-rce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59172-joker-linter-arbitrary-code-execution-in-project-local-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/komari-management-interface-csrf-b9b45191</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59160-yeger-turbo-graph-unauthenticated-task-execution-via-api-run</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59158-nuxt-ollama-credentials-exposure-in-public-runtime-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59157-webhookd-unrestricted-http-header-to-shell-variable-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55864-geonetwork-unauthenticated-server-side-request-forgery-in-sld</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19642-aws-sdk-for-c-memory-safety-issues-in-base64-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18954-amazon-aws-labs-documentdb-mcp-server-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19111-aws-strands-agents-tools-insecure-direct-object-reference-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18952-opensearch-security-analytics-plugin-missing-input-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19311-opensearch-alerting-plugin-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18953-aws-transform-mcp-server-improper-pathname-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85781-amazon-efs-csi-driver-insufficient-access-point-ownership</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75897-opensearch-dashboards-uncontrolled-resource-consumption-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84942-opensearch-dashboards-stored-xss-via-vega-expression-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85786-amazon-ion-java-memory-amplification-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85012-amazon-codecatalyst-blueprints-sdk-os-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85654-amazon-awslabs-dynamodb-mcp-server-code-injection-in-cdk</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87912-aws-security-agent-missing-s3-bucket-ownership-verification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18428-opensearch-sql-plugin-async-query-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85788-aws-labs-mysql-mcp-server-read-only-enforcement-bypass-via-sql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85787-amazon-postgres-mcp-server-sql-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75935-amazon-ion-java-memory-amplification-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85028-aws-fpga-development-kit-arbitrary-code-execution-via-insecure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83551-amazon-sagemaker-python-sdk-cleartext-hmac-key-storage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84851-amazon-ion-c-uncontrolled-recursion-in-reader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85730-smol-toml-infinite-loop-in-parser-via-malformed-toml</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55073-weasyprint-server-side-request-forgery-and-local-file-read-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54529-sqladmin-unvalidated-sortby-parameter-in-modelview-bypasses</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53495-containerd-cri-execsync-goroutine-leak-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-50024-githacker-path-traversal-in-ref-parsing-enables-file-existence</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-44282-decidim-decidim-elections-stored-xss-in-question-titles</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-58363-lf-edge-ekuiper-path-traversal-in-plugin-installation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-24979-lf-edge-ekuiper-ssrf-in-external-service-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-24978-lf-edge-ekuiper-stored-xss-in-external-service-creation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-24890-gitoxidelabs-gix-sec-safe-directory-bypass-in-elevated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69304-microsoft-asp-net-core-iis-middleware-denial-of-service-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69522-microsoft-diasymreader-native-heap-buffer-overflow-in-pdb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69439-microsoft-diasymreader-native-heap-overflow-in-pdb-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71328-microsoft-diasymreader-native-heap-buffer-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19490-citrix-netscaler-authentication-bypass-via-alternate-path</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87491-google-chromium-v8-out-of-bounds-write-in-javascript-engine</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/containerd-cri-security-context-bypass-in-checkpoint-restore-d7cf36e0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86996-n8n-agent-workflow-tool-bypasses-sub-workflow-caller-policy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-idn-domain-allow-list-bypass-in-address-normalization-234ce721</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92598-nodemailer-idn-punycode-domain-allow-list-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92596-nodemailer-quadratic-time-complexity-in-address-parser-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-quadratic-time-complexity-in-address-parser-f6132e7e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-email-address-validation-bypass-in-rfc-5322-comment-parsing-c1300f22</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92597-nodemailer-recipient-domain-validation-bypass-via-rfc-5322</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typespec-openapi3-path-traversal-in-version-placeholder-4368a6df</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-typespec-openapi3-path-traversal-in-version-value-2fdcfbf7</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84452-microsoft-winml-cli-cors-misconfiguration-enables-localhost-rce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/astro-remote-code-execution-via-avif-image-processing-6b99ffe8</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/astro-remote-code-execution-through-avif-image-optimization-79155f65</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84376-astro-authorization-bypass-in-base-path-stripping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84361-composer-arbitrary-command-execution-via-malicious-perforce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/sharp-heap-based-buffer-overflow-via-libheif-image-parsing-6451a83e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/sharp-remote-code-execution-via-malformed-heif-image-32a48ae6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84375-js-yaml-denial-of-service-via-empty-merge-sources</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84308-phpseclib-x25519-non-constant-time-scalar-multiplication-private</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-redos-in-markdown-attribute-parsing-9e6d9287</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-quadratic-redos-in-markdown-attribute-parsing-7c4b0aab</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84365-hono-tossg-path-traversal-with-consecutive-parent-directory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84364-hono-parsebody-memory-exhaustion-with-unbounded-dot-notation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84363-hono-query-parser-fragment-interpretation-differential</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84445-grpc-go-xds-server-denial-of-service-via-missing-headers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/next-js-image-optimization-heap-buffer-overflow-via-avif-9ce530ed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/next-js-heap-buffer-overflow-in-image-optimization-via-malicious-avif-90b951e0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84370-svgo-removescripts-xss-bypass-via-namespace-and-control-character</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84369-svgo-removescripts-incomplete-html-sanitization-in-foreignobject</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-resolvecontent-sandbox-bypass-in-legacy-signature-09738384</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92595-nodemailer-resolvecontent-legacy-signature-security-sandbox</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83616-xmldom-processing-instruction-target-injection-in-serialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83617-xmldom-xmlserializer-requirewellformed-bypass-via-line-terminator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83608-xmldom-doctype-name-injection-bypasses-requirewellformed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83609-xmldom-name-qname-validation-bypass-via-embedded-line-terminator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83618-xmldom-requirewellformed-doctype-validation-bypass-via-line</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83611-xmldom-parser-silently-accepts-malformed-xml-end-tags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83613-xmldom-quadratic-time-attribute-deduplication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83619-xmldom-end-tag-whitespace-trim-redos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83615-xmldom-quadratic-memory-consumption-in-namespace-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83614-xmldom-quadratic-time-parsing-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83612-xmldom-html-raw-text-closing-tag-case-mismatch-causes-output</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84372-predis-redis-command-injection-in-pipelined-cluster-connections</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84368-joi-prototype-pollution-via-proto-in-custom-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85062-colord-regular-expression-denial-of-service-in-color-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75604-next-js-unauthenticated-remote-code-execution-on-windows</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84367-hapi-joi-object-rename-prototype-pollution-via-template-target</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85061-maplibre-gl-js-xss-sanitizer-bypass-in-dom-sanitize</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84303-grpc-go-xds-rbac-http-filter-bypass-via-case-sensitive-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84382-pydantic-httpx2-decompression-memory-amplification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84373-vitest-vitest-mocker-path-traversal-in-redirect-mock</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84380-pydantic-httpx2-http-request-smuggling-via-conflicting-headers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84379-httpx2-multipart-header-injection-via-unvalidated-content-type</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84378-httpx2-quadratic-sse-line-buffering-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84381-httpx2-secure-websocket-plaintext-transmission-via-socks-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73560-vllm-ssrf-and-arbitrary-file-read-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84374-laravel-excel-arbitrary-file-overwrite-via-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83606-xmldom-pi-grammar-regex-redos-in-unterminated-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83607-xmldom-element-name-injection-via-createelement</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83605-xmldom-setattribute-attribute-name-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62815-microsoft-quic-use-after-free-in-path-migration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62900-microsoft-net-information-disclosure-in-git-and-sourcelink</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73558-vllm-integer-overflow-in-kernel-causing-cross-user-data-leak</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-visual-studio-heap-buffer-overflow-in-diasymreader-b617ae69</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-visual-studio-heap-buffer-overflow-in-diasymreader-20fcd9b2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-net-and-visual-studio-heap-buffer-overflow-elevation-of-02f3702a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-asp-net-core-iis-integration-denial-of-service-via-data-69730a19</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75595-netty-sni-routing-bypass-via-fragmented-tls-clienthello</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75596-netty-quadratic-pre-handshake-clienthello-reassembly-in-sni</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73087-dozzle-webhook-ssrf-guard-bypass-via-ipv6-transition-addresses</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69222-liquidjs-uncontrolled-resource-consumption-in-join-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73262-prowler-stored-xss-in-html-reports-through-unescaped-resource</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85063-csv-parse-prototype-pollution-via-columns-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72925-swc-html-minifier-script-injection-via-json-escaping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72789-siyuan-publish-access-gate-treats-encrypted-notebooks-as-public</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72790-siyuan-getnotebookinfo-unauthorized-disclosure-in-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-getattributeviewfieldviews-missing-authorization-cb8fd4f6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12259-nltk-missing-post-download-integrity-verification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76969-sap-cds-mtxs-credential-disclosure-in-multitenant-cap</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81963-microsoft-windows-privilege-escalation-via-link-following-in</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86218-n-able-n-central-static-code-injection-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85880-microsoft-windows-heap-based-buffer-overflow-in-advanced-local</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75650-adobe-commerce-and-magento-improper-neutralization-in-template</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typespec-spector-unauthenticated-remote-shutdown-via-post-admin-stop-da8e8fd5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typespec-spector-unauthenticated-remote-shutdown-547234f5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73557-vllm-concurrent-prompt-embedding-guard-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73556-vllm-redos-in-lm-format-enforcer-backend-regex-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73555-vllm-information-disclosure-via-validation-error-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72792-siyuan-tag-api-information-disclosure-via-password-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72793-siyuan-getconf-information-disclosure-of-session-key-and-secrets</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72795-siyuan-embedded-block-content-leak-via-missing-publish-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72794-siyuan-session-cookie-signing-key-disclosure-in-api-system</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72796-siyuan-static-routes-access-control-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72797-siyuan-getencryptednotebookstatus-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72798-siyuan-renderattributeview-missing-authorization-in-related</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72799-siyuan-missing-publish-access-filter-on-path-resolution-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75911-codewhale-project-config-allow-shell-override-enables-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75858-codewhale-rlm-eval-approval-bypass-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75912-codewhale-git-blame-argument-injection-allows-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75856-codewhale-ssrf-bypass-via-toctou-in-dns-pinning</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75915-codewhale-js-execution-environment-variable-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75913-codewhale-argument-injection-in-git-show-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75857-codewhale-exec-shell-interact-privilege-escalation-via-llm-input</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75859-codewhale-project-config-instructions-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75914-codewhale-image-analyze-symlink-path-traversal-in-vision-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/simplewebauthn-certificate-chain-validation-bypass-ee3041ed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/simplewebauthn-attestation-certificate-chain-validation-bypass-cd1a87f7</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85046-google-chromium-v8-type-confusion-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4644-google-cloud-integration-connectors-http-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72800-siyuan-missing-authorization-filters-on-api-endpoints-leaks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72801-siyuan-encrypted-notebook-key-material-and-wrapped-keys</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72802-siyuan-resolveassetpath-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72803-siyuan-missing-publish-access-filter-on-getblockattrs-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72804-siyuan-graph-endpoints-bypass-publish-password-protection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72805-siyuan-missing-authorization-in-block-api-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72806-siyuan-attribute-view-database-password-bypass-in-publish-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72807-siyuan-second-order-sql-injection-via-queryblocks-template</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72808-siyuan-missing-authorization-on-getfileannotation-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72809-siyuan-kernel-localhost-trust-admin-bypass-on-auth-gated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72810-siyuan-publish-boundary-bypass-via-websocket-broadcast</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72811-siyuan-backlink-search-sql-injection-via-unescaped-metadata</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72812-siyuan-missing-authorization-in-refreshbacklink-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68584-siyuan-password-protected-document-bypass-via-content-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68585-siyuan-missing-authorization-in-getblockinfo-metadata-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68586-siyuan-getbacklinkdoc-getbackmentiondoc-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68587-siyuan-getheading-transaction-authorization-bypass-in-publish</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69083-siyuan-fulltextsearchassetcontent-sql-injection-and-regexp</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77465-toml-node-uncontrolled-recursion-in-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63376-npm-toml-prototype-pollution-via-proto-desynchronization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69086-siyuan-path-traversal-in-attribute-view-read-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71429-stream-json-path-filters-algorithmic-complexity-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69084-siyuan-arbitrary-sql-execution-via-searchembedblock</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73295-material-for-mkdocs-dom-xss-in-search-suggestions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82404-toon-format-prototype-pollution-in-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73232-ffuf-denial-of-service-via-http-response-decompression-bomb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61556-liquidjs-infinite-loop-in-strip-html-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75602-openlist-simplehttp-offline-download-path-traversal-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-feishu-permission-tools-authorization-bypass-4a298b98</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-feishu-tools-authorization-bypass-75a656d3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-path-traversal-in-export-temp-branch-6fc4f947</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-svg-sanitizer-bypass-leading-to-stored-and-reflected-xss-6a7a1f5f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72921-seaweedfs-filer-jwt-authorization-bypass-in-allowed-prefixes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84366-scrapy-s3downloadhandler-cleartext-transmission-of-aws</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63435-mail-email-address-spoofing-via-malformed-rfc-2047-encoded-words</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61842-grav-twig-sandbox-config-exfiltration-via-offsetget-and-dump</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61690-grav-ziparchiver-decompression-bomb-via-missing-extraction-limits</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83610-xmldom-xml-fragment-injection-in-entityreference-serialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-16732-fastify-x-forwarded-header-spoofing-in-trustproxy-numeric-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18504-fastify-schema-validation-bypass-via-root-primitive-coercion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72920-seaweedfs-unauthenticated-filer-iam-grpc-service-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-mergeattributes-prototype-pollution-leading-to-xss-32e26b93</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-mergeattributes-prototype-pollution-enabling-xss-94f4a025</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12876-nltk-recursivedescentparser-uncontrolled-recursion-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/imagemagick-memory-leak-in-cli-invalid-options-dc8e6305</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/humanfs-symlink-dereference-directory-traversal-b5fdd713</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/humanfs-symlink-dereference-allows-arbitrary-file-disclosure-4a851f9d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73231-faker-helpers-fake-arbitrary-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83548-sonicwall-sma1000-server-side-request-forgery</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83549-sonicwall-sma1000-os-command-injection</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/google-gke-multi-cloud-authorization-bypass-in-cluster-registration-af138b69</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84304-grpc-go-heap-memory-exhaustion-via-http-2-data-frame</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84306-filament-app-based-multi-factor-authentication-bypass-via-reused</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84307-filament-password-validity-disclosure-in-login-mfa</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84310-pypdf-denial-of-service-via-malicious-pdf-outlines</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84311-pypdf-denial-of-service-via-crafted-xform-objects</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84309-pypdf-infinite-loop-in-treeobject-insert-child</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84305-sqlparse-quadratic-cpu-consumption-in-reindent-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84371-sanitize-html-stored-xss-via-svg-smil-uri-list-scheme-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-in-attributes-extension-932b44b3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-in-smartpunct-and-attributes-252cde7d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-xss-via-form-feed-in-attributesextension-d61618f5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-via-parsing-algorithms-d1480161</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tornado-multipart-form-data-memory-amplification-dos-in-httputil-py-5d8eb9f2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tornado-cookie-attribute-injection-via-case-insensitive-kwargs-c42b886c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73229-django-rest-framework-adminrenderer-permission-bypass-information</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73086-nanoid-integer-overflow-in-csprng-pool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-environment-variable-exfiltration-via-proxy-settings-5cfe8952</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-environment-secret-exfiltration-via-proxy-settings-in-workspace-f6626cca</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-pacquet-path-traversal-in-lockfile-dependency-symlinks-dc3f81d1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-pacquet-path-traversal-in-lockfile-install-2f692861</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mlflow-statsmodels-flavor-security-control-bypass-in-pickle-c4a0165d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-auth-plugin-downgrade-to-mysql-clear-password-leaks-credentials-620917f5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-auth-plugin-downgrade-to-mysql-clear-password-leaks-plaintext-4f504449</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69127-kirby-rest-api-information-disclosure-via-error-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77194-simple-membership-authentication-bypass-in-wordpress-multisite</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76111-dell-powerstore-incorrect-authorization-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18550-nokri-job-board-wordpress-theme-account-takeover-via-password</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-11873-red-hat-identity-management-dogtag-ca-rest-endpoint-stack-trace</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-10420-samsung-mtower-untrusted-pointer-dereference-in-syscalls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-15613-kyverno-server-side-request-forgery-via-service-calls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2023-54356-kyverno-weak-cipher-suite-support-in-tls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84165-opennebula-access-control-bypass-in-vm-exec</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84059-icp-das-ua-2200-and-ua-5200-command-injection-in-sethostname</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82927-samsung-mtower-untrusted-pointer-dereference-in-secure-world</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82926-samsung-mtower-null-pointer-dereference-in-tee-invoke</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4813-lutece-core-xsl-export-code-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59681-suse-yast2-auth-client-os-command-injection-in-active-directory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59680-suse-yast2-users-os-command-injection-in-password-settings</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-25706-suse-yast2-samba-client-command-injection-in-active-directory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19914-welcart-e-commerce-stored-xss-in-custom-order-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-16788-live-composer-stored-cross-site-scripting-via-dslc-module</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-16786-live-composer-stored-cross-site-scripting-in-testimonials</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-15101-wpbakery-page-builder-stored-cross-site-scripting-in-data</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78363-mw-wp-form-arbitrary-shortcode-execution-in-completion-message</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74916-wp-fastest-cache-cache-poisoning-via-unkeyed-tracking-parameters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13611-kivicare-authorization-bypass-in-rest-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78319-sauter-building-controllers-firmware-update-toctou-race-condition</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83772-cobham-satcom-vsat7090-command-injection-in-json-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77189-charitable-donation-forms-sql-injection-in-shortcode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75980-betterdocs-stored-cross-site-scripting-in-heading-id-attribute</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75964-wordpress-user-profile-builder-stored-cross-site-scripting-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18488-blocksy-companion-wordpress-plugin-stored-xss-in-dynamic-data</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83744-invoice-ninja-server-side-request-forgery-in-pdf-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83743-invoice-ninja-authorization-bypass-in-vendor-portal-profile</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82747-ash-incorrect-authorization-in-runtime-read-policy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77823-learnpress-wordpress-plugin-sql-injection-in-export-order-csv</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76006-the-photo-gallery-by-ays-responsive-image-gallery-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75965-profile-builder-stored-xss-via-date-shortcode-attribute</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75921-master-addons-for-elementor-arbitrary-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19952-dynamiapps-frontend-admin-arbitrary-file-deletion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19948-cozy-blocks-authorization-bypass-in-product-data-retrieval</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19806-support-genix-authentication-bypass-in-guest-ticket-login</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19796-listdom-ai-powered-business-directory-stored-cross-site-scripting</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19573-wordpress-affiliate-super-assistent-stored-xss-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18752-wordpress-persistent-login-sql-injection-via-wppl-device-id</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-17589-wordpress-shopping-cart-ecommerce-store-sql-injection-in-product</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-16787-live-composer-stored-cross-site-scripting-in-custom-field</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13203-live-composer-free-wordpress-website-builder-stored-xss-in-custom</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12747-frontend-admin-by-dynamiapps-stored-xss-via-tag-shortcode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82749-ash-authorization-bypass-via-unresolved-parent-filter-reference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82748-ash-incorrect-authorization-in-aggregate-queries</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82746-ash-project-ash-authorization-bypass-in-update-many</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82745-elixir-ash-improper-access-control-in-create-action</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82744-ash-project-ash-reactor-change-guard-exception-handling-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82743-ash-uncontrolled-resource-consumption-in-asynclimiter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82742-ash-uncontrolled-resource-consumption-in-filter-runtime</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82741-ash-project-ash-type-confusion-in-union-storage-tag-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82740-ash-project-ash-improper-input-validation-in-nested-array</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82739-ash-project-ash-information-disclosure-in-validation-confirmation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82738-ash-project-ash-improper-input-validation-in-uuidv7-type</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82737-ash-project-ash-integer-overflow-in-vector-encoding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82736-ash-project-ash-validation-bypass-in-cistring-constraints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82735-ash-project-ash-uncontrolled-resource-consumption-in-regex</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82734-ash-improper-validation-of-decimal-input</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19032-fasterxml-jackson-databind-path-deserialization-uri-scheme</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82733-ash-project-ash-typescript-information-disclosure-in-error</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82732-ash-project-ash-typescript-input-validation-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82731-ash-project-ash-typescript-open-redirect-in-typed-controller</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82730-ash-project-ash-typescript-unauthorized-attribute-disclosure-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77950-ash-project-ash-typescript-information-disclosure-in-error</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77856-ash-project-ash-typescript-dos-via-atom-table-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75865-wplp-cookie-consent-arbitrary-file-upload-and-auth-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74837-ash-project-ash-typescript-denial-of-service-via-resource</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67395-sage-employee-self-service-path-traversal-in-logo-functionality</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67394-plesk-for-linux-privilege-escalation-via-os-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65643-cpanel-eval-injection-in-park-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-48932-node-js-http-client-request-desynchronization-via-header-omission</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18743-popt-heap-overflow-in-poptconfigfiletostring</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19820-backblaze-client-improper-link-resolution-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83524-redport-optimizer-command-injection-in-system-clock</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82971-qvidium-opera11-command-injection-in-net-tr-cgi</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4560-rejected-cve-candidate</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-unbounded-zlib-inflate-decompression-bomb-6d425342</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-unbounded-zlib-inflate-decompression-bomb-dos-1b8791b1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82957-hyperledger-firefly-server-side-request-forgery-in-webhook</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82954-dokploy-path-traversal-in-traefik-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82922-shopex-ecshop-sql-injection-in-flow-update-cart</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82921-shopex-ecshop-unrestricted-file-upload-in-admin-pack</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82882-devtron-authorization-bypass-on-get-orchestrator-api-token</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82398-pypdf-inefficient-handling-of-non-whitespace-inputs-in-read-until</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82397-tornado-urlencoded-body-parsing-dos-via-unbounded-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82396-sulu-stored-xss-via-media-download-inline-disposition-override</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82395-sulu-media-move-authorization-bypass-idor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82394-sulu-authorization-bypass-in-preview-link-generation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82393-pnpm-tarball-dependency-manifest-name-path-traversal-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77353-wallos-crlf-injection-in-icalendar-export</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77352-wallos-ssrf-in-smtp-host-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77351-wallos-ssrf-in-email-notification-settings</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77348-wallos-ssrf-via-http-proxy-environment-variable-in-payments</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-tgrep-regular-expression-denial-of-service-02fca1b2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83596-webkitgtk-memory-corruption-in-web-content-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82919-cu-silicon-missing-authentication-in-edit-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82914-kishan0725-hospital-management-system-sql-injection-in-search-php</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82909-quantumnous-new-api-session-expiration-in-revoked-api-token</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82908-msi-dragon-center-integer-overflow-in-mmio-write-path-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82906-sdcb-chats-missing-authentication-in-signed-file-download</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82852-mapsvg-server-side-request-forgery-in-wordpress-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82392-pnpm-virtual-store-linker-path-traversal-via-unvalidated-deppath</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82346-hp-imagediags-privilege-escalation-due-to-insufficient-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82229-wordpress-social-login-and-register-xss</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82228-siteground-security-authentication-bypass-in-2fa</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82226-tickera-php-object-injection-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82225-registrationmagic-broken-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82224-slicewp-unauthenticated-cross-site-scripting</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82221-registrationmagic-cross-site-scripting-xss</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81892-easycorp-easyadminbundle-authorization-bypass-in-custom-action</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81891-elfinder-zip-extraction-mime-filter-bypass-allowing-php-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81890-elfinder-csrf-in-netmount-allows-forced-ftp-mounts</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81889-elfinder-ssrf-protection-bypass-via-dns-rebinding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81888-hono-oauth-providers-oauth-state-validation-bypass-in-social</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81887-livewire-dom-based-cross-site-scripting-in-client-side-state</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81780-hash-form-arbitrary-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81779-silk-themes-newspapers-x-backdoor-in-uploaded-files</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81778-kalles-addons-cross-site-scripting-xss-in-subscriber-role</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81768-super-store-finder-cross-site-scripting-in-wordpress-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81765-tailored-tools-xss-vulnerability-in-wordpress-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81764-email-essentials-cross-site-scripting-xss-in-wordpress-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81763-throws-spam-away-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81762-booking-and-rental-manager-broken-access-control-in-subscriber</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81758-ownerrez-api-broken-access-control-in-subscriber-functions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81756-smart-marketing-sms-and-newsletters-forms-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81298-leadconnector-unauthenticated-cross-site-scripting</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81297-fluent-forms-pro-add-on-pack-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81296-fluent-forms-pro-add-on-pack-broken-access-control-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81293-wp-data-access-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81291-uncode-unauthenticated-cross-site-scripting-xss</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81290-wordpress-email-subscribers-newsletters-unauthenticated-xss</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81287-charitable-wordpress-plugin-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81280-print-barcode-labels-for-woocommerce-sensitive-data-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81278-wpexperts-post-smtp-missing-authorization-in-settings-management</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79483-fastgpt-community-edition-nosql-injection-in-chat-history</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79408-metagpt-os-command-injection-in-repoparser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79407-metagpt-path-traversal-in-spo-extension</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75594-kirby-path-traversal-in-media-handler-via-encoded-slashes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75592-kirby-path-traversal-in-media-handling-via-sibling-directory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75460-xuezhisi-open-source-exam-system-privilege-escalation-in-teacher</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75458-xuezhisi-open-source-exam-system-privilege-escalation-in-user</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71415-kirby-authorization-bypass-in-rest-api-file-uploads</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62993-smarty-ssrf-via-redirect-bypass-in-fetch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61641-wallos-oidc-account-takeover-via-unverified-email-linking</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61640-wallos-ssrf-in-oidc-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61639-wallos-path-traversal-in-database-restore</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61638-wallos-ssrf-in-test-email-notification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54600-wallos-unauthenticated-database-replacement-on-fresh-install</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54599-wallos-oidc-state-validation-missing-in-login-csrf</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54598-wallos-unauthenticated-database-migration-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54179-laravel-backpack-crud-arbitrary-file-upload-via-base64-image</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-50199-wallos-incorrect-authorization-in-exchange-rate-refresh</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-50198-wallos-cross-user-subscription-cost-inference-via-replacement</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-38577-tenda-hg21-hardcoded-credentials-in-admin-account</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-63607-techstore-reflected-xss-in-contact-display-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82905-sdcb-chats-server-side-request-forgery-in-mcp-fetch-tools</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82835-caoqianming-django-vue-admin-improper-access-control-in-api-file</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82834-doccano-improper-access-control-in-bulk-delete-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82833-doccano-improper-access-control-in-project-example-detail</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81267-mozilla-firefox-for-ios-address-bar-spoofing-in-popup-navigation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-52730-xibo-missing-authorization-in-module-settingsform</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51740-totolink-t6-incorrect-access-control-in-killprocess</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51739-totolink-t6-auth-bypass-in-cloudsrvversioncheck</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51738-totolink-t6-loaddefsettings-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51737-totolink-t6-missing-access-control-in-cleartraceroutelog-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51736-totolink-t6-access-control-bypass-in-clearsyslog-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51735-totolink-t6-information-disclosure-in-showsyslog</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51734-totolink-t6-informslaveupdate-unauthenticated-access-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51733-totolink-t6-access-control-bypass-in-firmwareupgrade</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51732-totolink-t6-access-control-bypass-in-delwifischedulecfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51731-totolink-t6-incorrect-access-control-in-delvlancfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-14697-zephyr-rtos-ipv6-neighbor-solicitation-packet-leak-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13732-gdb-out-of-bounds-write-in-stabs-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83497-opensearch-sql-plugin-unrestricted-java-deserialization-in-cursor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82821-flvmeta-null-pointer-dereference-in-amf-object-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82820-flvmeta-heap-based-buffer-overflow-in-amf-string-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82818-dibo-software-diboot-improper-access-control-in-tenant-resource</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72001-pangolin-authentication-bypass-in-share-link-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53553-goploy-path-traversal-arbitrary-file-read-in-deploy-filediff</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53552-zhenorzz-goploy-idor-and-rce-in-project-handlers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53508-oasdiff-ssrf-and-local-file-read-via-git-revision-load-path</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53507-oasdiff-action-server-side-request-forgery-via-external-openapi</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-14696-zephyr-rtos-ethernet-bridge-packet-leak-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-14368-zephyr-lwm2m-json-content-formatter-buffer-overflow-in-get-string</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-14367-zephyr-i3c-ibi-subsystem-race-condition-in-work-node-allocation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2023-31308-amd-system-management-unit-out-of-bounds-memory-read-in-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2023-20511-amd-kernel-mode-driver-double-free-in-pointer-release</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82817-dibo-software-diboot-tenant-administrator-improper-access-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82816-dibo-software-diboot-authorization-bypass-in-ai-session-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82815-megaease-easeprobe-ip-spoofing-via-unvalidated-x-forwarded-for</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82813-ben-group-tubebuddy-for-youtube-authentication-token-corruption</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82811-toggl-track-origin-validation-bypass-in-postmessage-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79750-mcphub-horizontal-privilege-escalation-in-tool-execution-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79749-mcphub-ssrf-guard-bypass-in-ipv6-transition-address-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79748-mcphub-privilege-escalation-in-server-configuration-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79747-mcphub-ssrf-in-server-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79746-mcphub-bearer-key-privilege-escalation-on-group-routes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79745-mcphub-unauthorized-modification-of-global-prompt-and-resource</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79744-mcphub-missing-authorization-on-put-api-system-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79743-mcphub-path-traversal-via-malicious-mcpb-manifest-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51730-totolink-t6-access-control-bypass-in-delwifiaclrules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51729-totolink-t6-unauthenticated-device-deletion-in-deldevice</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51728-totolink-t6-unauthenticated-firmware-upload-in-uploadfirmwarefile</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51727-totolink-t6-incorrect-access-control-in-systemsettings</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51726-totolink-t6-access-control-bypass-in-delparentalrules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51725-totolink-t6-ntpsyncwithhost-incorrect-access-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19953-perl-uri-non-nfc-idna-encoding-bypass-via-missing-normalization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82810-extension-vn-2fa-authenticator-improper-message-authorization-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82809-vidiq-vision-for-youtube-missing-origin-validation-in-postmessage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82808-inbox-foundry-activeinbox-hard-coded-google-oauth-client-secret</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51724-totolink-t6-incorrect-access-control-in-delsmartqoscfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51723-totolink-t6-uploadcustommodule-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51722-totolink-t6-auth-bypass-in-setwifirepeatercfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51721-totolink-t6-access-control-bypass-in-setpaircfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51720-totolink-t6-firewall-filter-rule-deletion-via-missing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-17615-red-hat-resteasy-xml-external-entity-injection-in-sourceprovider</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-14366-silicon-labs-siwx917-wifi-driver-double-free-in-transmit-callback</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83492-extend-themes-kubio-ai-website-builder-input-validation-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82823-duplicate-cve-identifier</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82807-ieungsoft-ultra-ramdisk-pro-privilege-escalation-in-kernel-driver</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82805-typora-mermaid-rendering-engine-remote-code-execution-via-style</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82803-armink-struct2json-null-pointer-dereference-in-json</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82802-nasa-earthdata-search-server-side-request-forgery-in-opensearch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77975-ebyte-ne2-d11-credentials-exposure-in-configuration-export</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77966-ebyte-ne2-d11-privilege-escalation-via-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76133-ebyte-ne2-d11-weak-authentication-hashing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75133-keep-backup-daily-wordpress-plugin-sensitive-information-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75132-wapt-server-sql-injection-in-api-v3-hosts-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73819-ebyte-ne2-d11-missing-authentication-in-management-interface</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51719-totolink-t6-incorrect-access-control-in-url-filtering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51718-totolink-t6-authentication-bypass-in-delstaticdhcprules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51717-totolink-t6-incorrect-access-control-in-setopmodecfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51716-totolink-t6-unauthorized-port-forwarding-rule-deletion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51715-totolink-t6-incorrect-access-control-in-delmacfilterrules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51714-totolink-t6-incorrect-access-control-in-setroamingcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51713-totolink-t6-authentication-bypass-in-setmanualdialcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51712-totolink-t6-incorrect-access-control-in-setapwifischcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51711-totolink-t6-authentication-bypass-in-setwifiwpsstart</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51710-totolink-t6-authentication-bypass-in-setparentalrules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51709-totolink-t6-unauthenticated-wi-fi-reconfiguration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51708-totolink-t6-incorrect-access-control-in-setwifiwpscfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51706-totolink-t6-setsmartqoscfg-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51705-totolink-t6-auth-bypass-in-setwifimeshname</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51704-totolink-t6-incorrect-access-control-in-setwifimeshconfig</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51703-totolink-t6-auth-bypass-in-wifi-scheduling-via-setwifischedulecfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51702-totolink-t6-incorrect-access-control-in-setipportfilterrules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51701-totolink-t6-access-control-bypass-in-setmacfilterrules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51700-totolink-t6-incorrect-access-control-in-setwifiadvancedcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51699-totolink-t6-authentication-bypass-in-setdmzcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51698-totolink-t6-incorrect-access-control-in-seturlfilterrules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51153-qd-stored-cross-site-scripting-in-task-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51152-qd-server-side-request-forgery-in-har-test-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21827-hcl-connections-information-disclosure-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82970-wp-cookie-notice-for-gdpr-unrestricted-file-upload-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82801-nasa-earthdata-search-server-side-request-forgery-in-scale</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82703-edimax-br-6214k-os-command-injection-in-ping-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82702-edimax-br-6214k-os-command-injection-in-asp-wlanmp</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82701-code-projects-online-shopping-system-sql-injection-in-search</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78422-zbus-polkit-subject-new-for-owner-uid-type-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-66047-profilepress-unauthenticated-remote-code-execution-via-weak-token</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63083-rejected</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59111-digitalni-a-informacni-agentura-eobcanka-identifikace-os-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51697-totolink-t6-auth-bypass-in-setiptvcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51696-totolink-t6-missing-access-control-in-setportforwardrules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51695-totolink-t6-authentication-bypass-in-setddnscfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51694-totolink-t6-incorrect-access-control-in-setstaticdhcprules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51693-totolink-t6-incorrect-access-control-in-setvpnpasscfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51692-totolink-t6-missing-access-control-in-setwifiguestcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51691-totolink-t6-incorrect-access-control-in-setuploadsetting</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51690-totolink-t6-missing-authentication-in-setwancfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51689-totolink-t6-firmware-upgrade-unauthenticated-access-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51688-totolink-t6-missing-authentication-in-setwifisignalcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51687-totolink-t6-incorrect-access-control-in-wifi-guest-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51686-totolink-t6-authentication-bypass-in-setwifieasycfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51684-totolink-t6-incorrect-access-control-in-setstoragecfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51683-totolink-t6-auth-bypass-in-setlancfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82700-code-projects-online-shopping-system-cross-site-scripting-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82699-sambitraj-student-management-system-cleartext-password-storage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82698-sambitraj-student-management-system-use-of-default-password</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82697-sambitraj-student-management-system-insecure-session-cookie-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82217-eclipse-theia-path-traversal-in-ai-agent-mode-file-tools</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78079-joomshaper-helix-ultimate-open-redirect-via-base64-return</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78078-joomshaper-helix-ultimate-privileged-file-upload-bypass-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78077-joomshaper-helix-ultimate-stored-xss-in-megamenu-layout</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78076-joomshaper-helix-ultimate-broken-access-control-in-megamenu</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78075-joomshaper-helix-ultimate-broken-object-level-authorization-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78074-miniorange-joomla-extensions-unauthenticated-arbitrary-extension</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76986-apache-wicket-cross-site-scripting-in-form-default-option</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76985-apache-wicket-xss-in-palette-component</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76763-smallrye-graphql-denial-of-service-via-numeric-coercion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51681-totolink-t6-incorrect-access-control-in-setremotecfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51680-totolink-t6-auth-bypass-in-setledcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51679-totolink-t6-setpasswordcfg-unauthenticated-admin-account-takeover</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51678-totolink-t6-setsyslogcfg-missing-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51677-totolink-t6-upnp-configuration-auth-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51676-totolink-t6-authentication-bypass-in-setaccessdevicecfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51675-totolink-t6-authentication-bypass-in-setwaniecfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51674-totolink-t6-authentication-bypass-in-setschedulecfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51673-totolink-t6-incorrect-access-control-in-setntpcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51672-totolink-t6-authentication-bypass-in-getroamingcfg-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51671-totolink-t6-authentication-bypass-in-getclouddownloadstatus</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51670-totolink-t6-missing-access-control-in-getslaveupdate</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51669-totolink-t6-authentication-bypass-in-getpaircfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51668-totolink-t6-setlanguagecfg-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19702-tubi-tak-bi-lgem-pardus-boot-repair-os-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19616-tbc-technology-kitlogistic-missing-authorization-in-acls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82696-itsourcecode-sales-and-inventory-system-sql-injection-in-inv</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82695-tenda-ac18-authentication-bypass-in-telnet-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82694-tenda-ac1206-authentication-bypass-in-web-ui</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82693-tenda-ac1206-authentication-bypass-in-web-ui-telnet-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82692-d-link-dns-340l-and-dns-345-os-command-injection-in-iscsi-mgr-cgi</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74010-bbpress-broken-access-control-in-permission-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5956-ankara-hosting-site-management-panel-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51667-totolink-t6-auth-bypass-in-getwifiipmactable</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51666-totolink-t6-missing-authentication-in-setwizardcfg</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12894-red-hat-quarkus-qute-template-injection-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82797-samsung-rlottie-uncontrolled-recursion-in-shape-group-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82691-d-link-dns-320l-dns-327l-dns-340l-dns-345-os-command-injection-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82690-d-link-dns-327l-and-dns-340l-os-command-injection-in-ve-mgr-cgi</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82689-d-link-dns-sharecenter-os-command-injection-in-isomount-mgr-cgi</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76984-apache-wicket-improper-html-attribute-escaping-in-header-tags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76983-apache-wicket-improper-input-neutralization-in-label-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76982-apache-wicket-xss-in-button-component</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75802-apache-wicket-ajaxeditablechoicelabel-cross-site-scripting</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71378-apache-wicket-cross-site-request-forgery-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71257-apache-wicket-file-upload-limit-bypass-in-multipart-request</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70449-apache-wicket-path-traversal-in-resource-url-attributes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82881-aix-db-stored-cross-site-scripting-in-markdown-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82880-yacy-search-server-xml-external-entity-injection-in-parsers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82879-dataease-access-control-bypass-in-sharing-link-module</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82878-dataease-authorization-bypass-on-geographic-and-dashboard-apis</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82877-ilias-arbitrary-file-read-in-soap-addfile-method</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82876-phison-ps3111-s11-ssd-controller-firmware-signature-verification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82688-d-link-dns-340l-and-dns-345-os-command-injection-in-virtual-vol</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82680-d-link-dsm-g600-out-of-bounds-write-in-multipart-handler</loc><lastmod>2026-09-25</lastmod></url>
</urlset>
