<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url><loc>https://junglewise.ai/threats/cve-2026-57179-python-social-auth-social-auth-core-session-fixation-in-partial</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57178-python-social-auth-social-core-vk-app-backend-auth-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57177-python-social-auth-social-core-login-csrf-in-loginradius-backend</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57176-python-social-auth-social-core-account-takeover-in-vend-backend</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57175-python-social-auth-social-auth-core-saml-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61815-zbateson-mail-mime-parser-crlf-header-injection-in-attachment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61816-zbateson-mail-mime-parser-uncontrolled-resource-consumption-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59980-hpack-unbounded-variable-integer-decoding-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61782-rsdoctor-rspack-plugin-unauthenticated-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61788-bytebase-dbhub-read-only-mode-bypass-via-function-calls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61742-dbhub-http-transport-dns-rebinding-allows-unauthenticated-sql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61741-http4s-scala-xml-xxe-vulnerability-in-entitydecoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61784-xhtml-purifier-attribute-injection-sanitizer-bypass-leading-to</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56744-bsv-wallet-toolbox-storage-output-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56738-phpmyfaq-sql-injection-in-stopwords-add</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56737-phpmyfaq-two-factor-authentication-password-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56736-phpmyfaq-stored-xss-in-admin-faq-editor-via-html-entity-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/langchain-nvidia-local-file-disclosure-through-vlm-image-inputs-2ea392d6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61604-ixo-blockchain-x-bonds-did-resolved-payer-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61732-decepticon-role-boundary-forgery-via-chatml-special-token</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-96883-aws-pgcollection-type-confusion-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/virustotal-yara-x-unvalidated-deserialization-in-rules-deserialize-d5769253</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63498-snipe-it-stored-xss-via-inline-xml-rendering-in-uploaded-files</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85056-zitadel-login-v2-mfa-bypass-via-session-reuse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85057-zitadel-actions-v1-sandbox-escape-via-require-filesystem-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62368-snipe-it-stored-xss-in-custom-field-names</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62286-dozzle-label-filter-bypass-in-events-stream</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63493-snipe-it-2fa-bypass-via-api-token-flow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19730-podman-quadlet-install-incomplete-file-truncation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59167-suneditor-xss-vulnerability-in-sanitizer-with-namespaced-tags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62998-redaxo-rex-list-unwhitelisted-order-by-column-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93289-eufy-omni-c20-and-x10-pro-os-command-injection-and-certificate</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84399-botslab-g980h-dashcam-multiple-authentication-and-authorization</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5430-wso2-api-control-plane-path-traversal-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71362-adobe-commerce-and-magento-incorrect-authorization</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61685-reactpress-sql-injection-via-dynamic-column-names-in-typeorm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/plone-plone-app-contenttypes-denial-of-service-via-excessive-filename-c46fb307</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57576-plone-plone-app-dexterity-denial-of-service-via-excessive-field</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77394-openc3-cosmos-stored-cross-user-xss-in-button-widget</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82407-klever-go-bls-public-key-validation-bypass-in-validator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82409-klever-go-elasticsearch-injection-via-account-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82406-klever-go-marketplace-buy-missing-isclaimed-guard</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76089-verbb-formie-missing-authorization-on-sent-notification-resend</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61814-typelevel-jawn-asyncparser-quadratic-parsing-effort-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59990-jawn-json-parser-denial-of-service-via-uncontrolled-nesting-depth</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82405-klever-go-account-takeover-via-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86065-klever-go-unauthenticated-websocket-subscribe-remote-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86064-klever-go-log-endpoint-unauthenticated-logging-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93421-google-mesop-unauthenticated-ansi-escape-sequence-injection-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77602-openc3-cosmos-authenticated-remote-code-execution-via-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77601-openc3-cosmos-authenticated-os-command-injection-via-pypi-url</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61695-square-wire-swift-runtime-negative-length-in-skipgroup-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76087-verbb-formie-unauthenticated-submission-hijacking-via-submit</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76086-craft-formie-integration-form-settings-ssrf-and-credential</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92692-sulu-jcr-sql2-injection-in-category-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77421-jline-nano-editor-redos-in-regex-search-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77422-jline-redos-in-built-in-grep-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77420-jline-history-ignore-redos-via-unescaped-regex-metacharacters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85724-moquette-mqtt-broker-pattern-acl-wildcard-injection-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73858-solspace-freeform-twig-template-injection-via-form-field-values</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88974-wpgraphql-authorization-bypass-in-updatepost-mutation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63000-redaxo-missing-csrf-protection-on-package-update</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63002-redaxo-stored-xss-in-mediapool-sync-page-via-unescaped-filenames</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63001-redaxo-media-manager-stored-xss-in-type-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61541-zapros-unbounded-content-encoding-decompression-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61652-zapros-decompression-bomb-in-streaming-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57149-plone-plone-app-portlets-tales-injection-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/third-party-ics-integrators-supply-chain-risk-to-critical-90b78f9a</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91130-home-assistant-statistics-graph-card-xss-via-entity-names</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91129-home-assistant-server-side-request-forgery-in-mdns-ipp</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88010-traefik-basicauth-singleflight-username-enumeration-via-timing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88978-hatchet-durabletask-workerstatus-grpc-authorization-bypass-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84298-hatchet-cross-tenant-durable-callback-payload-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79913-cloudreve-ssrf-guard-bypass-via-ipv6-transition-wrappers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79767-gardener-authorization-bypass-via-group-subject-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77637-cloudreve-privilege-scope-bypass-in-admin-api-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77633-cloudreve-toctou-race-in-storage-quota-check-and-charge</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-94462-spree-store-api-broken-access-control-in-cart-association</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86062-lightrag-webui-stored-xss-in-chat-answer-renderer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85740-lightrag-ssrf-via-ipv6-transition-address-bypass-in-markdown</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85734-lightrag-hku-login-endpoint-missing-rate-limiting-enables-brute</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85725-lightrag-plaintext-password-timing-attack-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85709-lightrag-api-sensitive-information-exposure-in-error-responses</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83805-nautobot-authorization-bypass-in-approval-workflow-rest-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83801-nautobot-stored-cross-site-scripting-in-form-help-text</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77528-autobahn-python-permessage-deflate-decompression-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76805-nuclei-environment-variable-disclosure-in-dast-fuzz-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76804-projectdiscovery-nuclei-security-gate-bypass-via-workflow-file</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76803-projectdiscovery-nuclei-local-file-read-via-mysql-sandbox-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76802-projectdiscovery-nuclei-arbitrary-command-execution-in-dast</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76819-projectdiscovery-nuclei-arbitrary-code-execution-via-goja</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77561-tinyauth-denial-of-service-via-login-attempt-map-saturation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77560-tinyauth-forward-auth-authorization-bypass-via-case-sensitive-acl</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77582-tinyauth-user-enumeration-via-timing-oracle</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62371-kubeedge-command-injection-in-nodeupgradejob-via-v1alpha2-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62370-kubeedge-cloudhub-unbounded-buffer-allocation-in-viaduct-packer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62369-kubeedge-keadm-path-traversal-in-decompresstargz</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63131-openbao-authorization-bypass-in-policy-enforcement-for-list</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63132-openbao-recovery-mode-timing-attack-token-leakage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71543-openbao-templated-policies-privilege-escalation-via-wildcard</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77285-openbao-agent-information-disclosure-via-stdout-in-exec-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62182-kubeedge-configupdatejob-command-injection-in-updatefields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77426-unleash-admin-api-missing-await-on-permission-check-and-cross</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77425-unleash-authorization-bypass-in-strategy-reordering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77250-mcp-atlassian-oauth-fallback-token-storage-plaintext-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77249-atlassian-mcp-jira-user-permission-lookup-ssrf-via-unvalidated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77247-sooperset-mcp-atlassian-arbitrary-file-upload-to-jira-confluence</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77244-mcp-atlassian-authentication-bypass-in-http-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77274-atlassian-mcp-ssrf-protection-bypass-via-url-parser-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77271-atlassian-mcp-path-traversal-bypass-leading-to-rce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77267-mcp-atlassian-incomplete-ssrf-remediation-in-url-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77272-atlassian-mcp-reflected-xss-in-oauth-setup-callback-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77262-sooperset-mcp-atlassian-path-traversal-in-confluence-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77268-atlassian-mcp-insecure-oauth-token-file-permissions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77259-mcp-atlassian-arbitrary-file-read-via-confluence-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77261-mcp-atlassian-ssrf-protection-bypass-in-basic-auth-and-oauth</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77270-atlassian-mcp-arbitrary-file-read-via-upload-attachment-tools</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77265-atlassian-mcp-server-ssrf-via-dns-rebinding-in-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77266-mcp-atlassian-path-traversal-in-upload-attachment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77269-atlassian-mcp-path-traversal-in-upload-attachment-allows</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77260-atlassian-mcp-server-arbitrary-file-read-via-unconstrained-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77257-sooperset-mcp-atlassian-arbitrary-local-file-read-in-http-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77243-mcp-atlassian-tool-authorization-bypass-in-tools-call</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77255-atlassian-mcp-arbitrary-file-read-via-path-traversal-in-update</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77253-mcp-atlassian-arbitrary-file-read-in-attachment-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77251-mcp-atlassian-jql-cql-filter-bypass-in-jira-and-confluence-search</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77246-mcp-atlassian-http-server-local-file-exfiltration-via-unvalidated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77248-atlassian-mcp-unauthenticated-arbitrary-file-read-in-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76910-unleash-feature-toggle-authorization-bypass-in-clone-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76909-unleash-change-request-approval-email-html-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75510-novu-stored-xss-in-in-app-inbox-via-javascript-scheme-in-redirect</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69190-graylog-privilege-escalation-in-saved-searches-and-dashboards-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77322-sipgo-dos-via-unvalidated-websocket-frame-length</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65829-mpxj-path-traversal-in-primavera-p3-prx-and-suretrak-stx-readers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61570-mpxj-xxe-vulnerability-in-merlinreader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62987-fabio-incomplete-fix-for-hop-by-hop-header-stripping-in-trust</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63628-mppx-gas-draining-via-eip-2930-access-list</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63627-mppx-gas-draining-via-calldata-padding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63342-hatchet-authorization-bypass-in-durable-task-event-log-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61681-hatchet-ssrf-in-sns-unsubscribeconfirmation-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62364-weblate-wlc-api-token-disclosure-in-project-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58268-sipgo-dos-via-unvalidated-content-length-in-stream-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63116-deepstream-patch-multi-permission-bypass-in-valve-access-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62985-request-filtering-agent-unhandled-synchronous-exception-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62866-dasel-selector-lexer-panic-on-trailing-whitespace</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59168-dasel-unbounded-recursion-in-json-and-xml-readers-causes-stack</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62282-opencve-server-side-request-forgery-in-notifications</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59991-psd-tools-uncontrolled-memory-allocation-in-composite-numpy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61670-microsandbox-information-disclosure-in-process-arguments</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-94384-amazon-connect-salesforce-lambda-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56682-9router-login-brute-force-lockout-bypass-via-spoofable-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56681-9router-authentication-bypass-in-public-llm-api-via-spoofable-x</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61612-aborruso-ckan-mcp-server-ssrf-via-dns-name-resolution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58272-sync-in-server-username-enumeration-via-timing-side-channel-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58270-sync-in-server-redos-via-unsanitized-regex-in-pathfilters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58269-sync-in-server-two-factor-authentication-bypass-in-token-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58271-sync-in-server-totp-brute-force-in-sync-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61647-roomi-fields-notebooklm-mcp-path-traversal-in-vault-batch-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89207-siemens-wtv676-and-wtv776-denial-of-service-via-input-validation</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-50093-siemens-siveillance-control-arbitrary-file-upload-in-ois-web</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67367-siemens-simove-fleetmanager-and-siplant-path-traversal</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87121-lwip-tcp-ip-stack-mqtt-client-application-out-of-bounds-write</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34223-siemens-desigo-cc-code-injection-in-graphics-documents</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88020-openplc-runtime-v3-cross-site-scripting-in-web-interface</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91018-lwip-double-free-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-94127-f5-big-ip-apm-heap-based-buffer-overflow</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93952-arista-velocloud-orchestrator-improper-input-validation</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93616-check-point-multiple-products-path-traversal-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85102-check-point-security-gateway-and-spark-firewall-improper</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61628-nginx-ignition-unauthenticated-admin-account-creation-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61629-nginx-ignition-i18n-middleware-cpu-amplification-via-accept</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61630-nginx-ignition-totp-reuse-during-validity-window</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/falco-k8saudit-detection-bypass-for-privileged-init-and-ephemeral-7788502d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61687-hatchet-oauth-state-csrf-via-empty-state-collision</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/obot-server-side-request-forgery-via-remote-mcp-server-url-8f4d0bee</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/obot-mcp-registry-api-authentication-bypass-7d5ec1f3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/obot-oauth-dynamic-client-registration-token-theft-via-audience-62f98039</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71537-paymenter-credit-refund-double-spend-race-condition-in-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85058-moquette-mqtt-broker-authorization-bypass-in-will-message</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59163-mnemosyne-jwt-signature-verification-bypass-in-sync-server</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63445-perses-filesystem-path-traversal-via-unvalidated-project</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63199-perses-missing-authorization-in-datasource-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63458-perses-project-query-parameter-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91127-file-viewer-dom-xss-via-unsafe-hyperlink-schemes-in-legacy-doc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77301-adm-zip-uncontrolled-memory-allocation-via-uncompressed-size</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77339-f1bonacc1-process-compose-dns-rebinding-in-mcp-sse-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81505-convoy-cross-tenant-source-idor-leaks-broker-credentials</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84992-md-editor-v3-cross-site-scripting-in-code-fence-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63406-anycable-hardcoded-telemetry-auth-token-and-credential-leak</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63349-anyio-run-process-open-process-privilege-dropping-bug-with-extra</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63374-anyio-tlsstream-idna-2003-host-name-encoding-certificate-spoofing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64847-anyio-process-pool-workers-indefinite-blocking-on-undrained</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63405-anycable-pusher-rest-api-request-body-md5-verification-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58197-toolhive-containerized-mcp-servers-host-service-access-via-host</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61682-kcp-front-proxy-header-injection-and-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61833-zot-registry-bearer-authentication-delete-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61795-capsule-hostnameregexhandler-parameter-order-bypass-in-webhook</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61672-capsule-forbidden-namespace-service-node-label-and-annotation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61794-capsule-tenant-forbiddenannotations-regex-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/lmdeploy-ssrf-bypass-in-url-validation-f10a8d23</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-33625-lmdeploy-arbitrary-code-execution-via-eval-of-untrusted-quant</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-66455-lmdeploy-remote-code-execution-via-pickle-deserialization-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/semantic-mediawiki-missing-authorization-in-smwtask-api-module-37615b77</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/semantic-mediawiki-special-facetedsearch-reflected-xss-via-cstate-15c1ff89</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77616-semantic-mediawiki-reflected-xss-in-special-ask-cursor-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77610-semantic-mediawiki-query-debug-output-xss-in-debugformatter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77609-semantic-mediawiki-open-redirect-in-special-uriresolver</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77607-semantic-mediawiki-reflected-xss-in-special-ask-separator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77608-semantic-mediawiki-reflected-xss-in-searchbyproperty</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77606-semantic-mediawiki-reflected-xss-in-special-ask-plain-table</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61682-semantic-mediawiki-stored-xss-through-wikitext-data-attributes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-53837-xwiki-xwiki-rendering-xml-eval-injection-via-html-macro-escaping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77615-opencast-paella-player-stored-xss-in-webvtt-dfxp-caption-cues</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72819-grav-cms-remote-code-execution-via-zip-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75827-grav-blueprint-bare-function-arbitrary-file-write-via-error-log</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75828-grav-stored-xss-in-xss-detector-via-unpaired-quote-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74907-grav-path-traversal-in-static-asset-server</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86003-coredns-rfc-2136-update-bypass-in-doh-doq-grpc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86000-soup-sieve-redos-in-identifier-and-value-selector-patterns</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85999-soup-sieve-polynomial-time-redos-in-whitespace-trimming-regex</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88976-plate-html-deserialization-xss-via-browser-parsing-behavior</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84997-reactphp-http-denial-of-service-in-chunked-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82399-coredns-unauthenticated-memory-exhaustion-in-doh-doq-and-doh3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81876-hapi-fhir-shcparser-deflate-infinite-loop-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81875-hapi-fhir-shcparser-unbounded-deflate-decompression-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/djust-template-xss-via-inherited-context-safety-grant-eaaae5cf</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/djust-six-template-auto-escaping-bypass-xss-fc506972</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81871-opentelemetry-go-otlp-log-grpc-exporter-tls-certificate</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81870-opentelemetry-go-endpoint-url-logging-in-tracerprovider</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81868-steeltoe-certificate-authorization-header-spoofing-via-missing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81516-steeltoe-discovery-consul-malformed-secure-metadata-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81515-steeltoe-eureka-discovery-client-denial-of-service-via-malformed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86049-jupyter-server-token-leakage-in-5xx-error-logs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81176-svelte-devalue-dos-via-malformed-input</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79752-cakephp-functionsbuilder-sql-injection-in-multiple-methods</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-45140-chamilo-lms-cstudio-upload-flow-unauthenticated-remote-code</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92943-aws-iot-device-sdk-for-python-certificate-host-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68537-fulgur-non-painting-replaced-elements-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68523-fulgur-unbounded-page-slicing-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86039-libp2p-peerstore-peer-id-spoofing-in-signed-records</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75523-steeltoe-management-endpoint-httpexchanges-query-string-secret</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75831-grav-stored-xss-via-markdown-audio-video-source-url</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86038-libp2p-gossipsub-message-authentication-bypass-in-rsa-peer-ids</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72832-grav-stored-xss-via-quoted-attribute-bypass-in-detectxss</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85717-asynchttpclient-credential-leak-on-cross-origin-redirect</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85720-asynchttpclient-credentials-exposure-in-plaintext-connect-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85721-asynchttpclient-unbounded-http-1-1-response-decompression-denial</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85716-asynchttpclient-scram-and-digest-mutual-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85756-ssh-net-scpclient-remote-code-execution-via-unquoted-scp-paths</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69147-vllm-request-selected-pynvvideocodec-gpu-decode-bypasses-vram</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69089-grav-cms-path-traversal-in-imagemedium-watermark</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69088-grav-cms-incomplete-callable-validation-in-blueprint-dynamic</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85732-oras-go-blind-ssrf-via-unvalidated-link-header-in-pagination</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85731-oras-go-arbitrary-file-write-via-symlink-chain-bypass-in-tar</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86043-skipper-opa-body-authz-bypass-in-chunked-http-2-requests</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77412-rabbitmq-amqp091-go-denial-of-service-via-malicious-field-length</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77411-rabbitmq-amqp091-go-protocol-desynchronization-via-integer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77410-rabbitmq-amqp091-go-resource-exhaustion-via-unbounded-buffer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77408-rabbitmq-amqp091-go-silent-data-truncation-via-shortstr-integer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77407-rabbitmq-amqp091-go-plaintext-credential-exposure-in-plain-auth</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77406-rabbitmq-amqp091-go-resource-exhaustion-via-signed-to-unsigned</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77405-rabbitmq-amqp091-go-missing-tls-minimum-version-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77404-rabbitmq-amqp091-go-connection-configuration-injection-via-tls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77403-rabbitmq-amqp091-go-denial-of-service-in-frame-size-negotiation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86071-junrar-localfolderextractor-path-traversal-via-intermediate</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77401-zope-accesscontrol-information-disclosure-via-string-format</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76825-restrictedpython-sandbox-escape-via-string-formatter-field</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85715-exifreader-denial-of-service-via-crafted-heic-avif-iloc-box</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61700-mariadb-connector-j-allowlocalinfile-bypass-in-local-infile</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69197-umbraco-delivery-api-authorization-bypass-in-content-reference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85078-sanic-http-chunked-trailer-request-smuggling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63506-tinacms-auth-broken-access-control-in-isauthorized</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63225-redocly-cli-path-traversal-in-split-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82410-pocketbase-unhandled-panic-in-worker-goroutines</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62949-asyncssh-event-loop-infinite-loop-via-zero-maximum-packet-size</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63126-wire-protobuf-decoder-integer-overflow-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77360-orpc-vary-header-injection-in-cors-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75516-rabbitmq-java-client-frame-level-oom-via-math-min-with-unlimited</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75513-marten-linq-provider-sql-injection-via-unescaped-string-literals</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59823-litellm-proxy-server-side-request-forgery-in-user-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71538-cyclonedx-cyclonedx-npm-shell-injection-in-workspace-argument-on</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63472-vendure-account-takeover-in-external-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63461-vendure-shop-api-authorization-bypass-via-filteroperator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63460-vendure-unauthenticated-redos-in-regex-filter-on-sqlite</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63459-vendure-dashboard-stored-xss-in-richtextdescriptioncell</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61793-nuxt-og-image-unauthenticated-ssrf-in-font-url-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64684-model-context-protocol-rust-sdk-custom-header-leak-on-cross</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13348-schneider-electric-powerchute-serial-shutdown-improper</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-6625-schneider-electric-modicon-m340-improper-input-validation-in-ftp</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-15688-mitsubishi-electric-gx-works3-authentication-bypass-in-block</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86520-bransys-eld-hardcoded-credentials-and-cleartext-transmission</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-4872-hitachi-energy-facts-control-platform-multiple-vulnerabilities-in</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13336-schneider-electric-netbotz-5-750-755-os-command-injection-and-sql</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61709-openfga-listusers-incorrect-authorization-in-intersection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63671-nuxtjs-mdc-url-sanitizer-bypass-via-svg-xlink-href-and-data</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63128-rmcp-streamable-http-server-unauthenticated-session-table-memory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63127-rmcp-missing-resource-field-validation-in-oauth-metadata</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57173-vllm-unauthenticated-audio-decompression-bomb-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61599-djust-unauthenticated-arbitrary-module-import-in-websocket-sse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61589-djust-host-header-omission-in-websocket-tenant-resolution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61596-djust-broken-object-level-access-control-idor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61588-djust-django-model-serialization-sensitive-data-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61594-djust-authorization-bypass-on-websocket-sse-mount-path</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61591-djust-state-snapshot-state-injection-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61592-djust-sse-session-hijacking-via-client-chosen-session-id</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61597-djust-stored-reflected-xss-via-javascript-urls-in-component-tags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86831-amazon-eks-aws-network-policy-agent-cross-namespace-networkpolicy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68904-node-opcua-tcp-socket-leak-in-keepalive-reconnection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61593-djust-server-sent-events-cross-site-request-forgery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-59953-lmdeploy-remote-code-execution-via-pickle-deserialization-in-zmq</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61595-djust-multi-tenant-isolation-bypass-on-websocket-sse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61598-djust-mass-assignment-of-arbitrary-view-attributes-in-update</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81192-opentelemetry-resources-host-path-hijacking-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61590-djust-observability-endpoints-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61560-zereight-mcp-gitlab-unauthenticated-arbitrary-file-read-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cisa-cyber-decoys-guidance-for-detection-and-response-4396c45f</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58704-google-pixel-improper-authorization-in-cellular-modem</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76460-cisco-identity-services-engine-incorrect-privileged-api-use</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87886-acronis-backup-privilege-escalation-in-cpanel-whm-and-plesk</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-15587-google-security-operations-soar-privilege-escalation-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61559-zereight-mcp-gitlab-server-side-request-forgery-in-dynamic-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61568-zereight-mcp-gitlab-dns-rebinding-in-streamable-http-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/zereight-mcp-gitlab-multiple-safety-control-bypasses-fcdfc95d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/zereight-mcp-gitlab-multiple-safety-control-bypasses-6b1d97f3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61554-emp3r0r-http-polling-unauthenticated-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88975-http4s-ember-http-2-frame-buffering-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61544-libp2p-quic-remote-panic-in-quic-handshake-certificate-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69201-http4s-resourceservice-and-webjarservice-path-traversal-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69218-http4s-ember-http-2-unbounded-continuation-frame-accumulation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69216-http4s-ember-chunk-parser-lenience-in-http-request-smuggling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69215-http4s-cookiejar-middleware-cookie-leakage-via-substring-matching</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69214-http4s-cookiejar-middleware-accepts-arbitrary-set-cookie-domain</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69213-http4s-ember-http-2-unbounded-outbound-frame-queue-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69208-http4s-digestauth-memory-exhaustion-via-unbounded-nonce-cache</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69206-http4s-digestauth-replay-attack-in-authorization-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69205-http4s-ember-http-request-smuggling-via-transfer-encoding-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69204-http4s-ember-http-request-smuggling-via-transfer-encoding-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69203-http4s-ember-http-2-stream-limit-enforcement-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69202-http4s-ember-http-2-unbounded-inbound-body-buffering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nezha-oauth2-redirect-uri-host-header-injection-regression-331e924a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32599-netmaker-boolean-based-sql-injection-in-dns-deletion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81861-schneider-electric-scadapack-x70-insufficiently-protected</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76081-zitadel-improper-role-revocation-on-granted-projects</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59178-esphome-device-builder-authentication-bypass-via-silent-env-var</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86830-aws-team-privilege-escalation-in-iam-identity-center</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/october-cms-incomplete-url-scheme-validation-in-image-resizer-f7555212</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-49400-october-cms-php-object-injection-in-widget-session-storage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-46696-october-cms-twig-sandbox-bypass-in-safe-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76461-cisco-secure-email-gateway-sql-injection</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61534-yayson-prototype-pollution-in-store-legacystore-deserialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59973-frontmcp-and-mcp-from-openapi-ssrf-bypass-in-openapi-ref</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56825-shopper-collectionproducts-missing-authorization-on-product</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56830-shopper-media-component-missing-authorization-in-store</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56829-shopper-variantstock-missing-authorization-and-unlocked-property</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56828-shopper-privilege-escalation-via-improper-livewire-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56826-shopper-framework-missing-authorization-in-settings-components</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56831-shopper-framework-negative-discount-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56827-shopper-authorization-bypass-in-filament-bulk-actions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59971-mysql-mcp-server-missing-authentication-and-dns-rebinding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89332-kiro-ide-sensitive-workspace-data-exfiltration-via-agent-written</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89090-aws-sdk-for-go-v2-denial-of-service-in-eventstream-header-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18061-aws-advanced-jdbc-wrapper-xxe-in-remotequerycacheplugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89065-projen-path-traversal-in-file-manifest-cleanup</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84869-connectwise-screenconnect-unauthorized-file-transfer-and</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-42018-jfrog-artifactory-improper-authentication-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85706-gitlab-community-and-enterprise-edition-path-traversal-in-commits</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65107-slurm-sbcast-shared-library-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88006-open-webui-oauth-token-exchange-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88008-traefik-http-request-smuggling-via-unrestricted-protocol-upgrade</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88004-traefik-entrypoint-header-sanitization-bypass-via-request</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88007-traefik-http-3-backend-ntlm-connection-reuse</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88009-traefik-rootless-http-1-request-target-routing-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88014-rclone-archive-zip-zip-slip-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88013-rclone-http-backend-header-forwarding-on-redirect</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88016-rclone-directory-metadata-escape-through-symlink-in-links-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88015-rclone-local-symlink-range-header-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88018-rclone-serve-s3-sigv4-signature-bypass-with-auth-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88044-rclone-per-server-auth-proxy-bypass-in-ftp-and-s3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88017-rclone-ftp-cross-session-auth-proxy-backend-confusion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88046-rclone-path-traversal-via-object-name-escaping-on-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88045-rclone-serve-s3-multipart-declared-length-memory-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87011-open-webui-oidc-back-channel-logout-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87012-open-webui-calendar-alert-suppression-via-non-numeric-meta-value</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87013-open-webui-infinite-loop-via-folder-parent-cycle</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87014-open-webui-session-privilege-escalation-through-sso-role-sync</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59965-jhb-software-payload-alt-text-plugin-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59960-argos-ci-core-os-command-injection-in-git-branch-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mistral-rs-unbounded-media-fetch-and-video-frame-extraction-dos-9ec59bbb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mistral-rs-media-loader-ssrf-and-arbitrary-file-read-via-image-url-669bc2df</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87015-open-webui-session-cookie-disclosure-in-tool-servers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87016-open-webui-wildcard-injection-in-oauth-oidc-identity-matching-on</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88062-omniroute-acp-custom-agent-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86073-n8n-oauth-consent-bypass-via-unbound-refresh-token</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86074-n8n-instance-ai-credential-setup-ssrf-via-unvalidated-probe-url</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86995-n8n-git-node-config-bypass-enables-local-repository-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86085-n8n-missing-authorization-in-role-assignment-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86993-n8n-log-streaming-credentials-unauthorized-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86084-n8n-authentication-bypass-via-disabled-oidc-sso-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86080-n8n-github-trigger-cryptographic-signature-verification-fail-open</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86079-n8n-path-injection-in-elasticsearch-and-elasticsecurity-nodes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86078-n8n-prototype-pollution-in-workflow-summary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86994-n8n-missing-authorization-in-active-workflows-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86083-n8n-expression-sandbox-escape-in-legacy-engine-via-json-stringify</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86077-n8n-approval-gate-bypass-via-reused-resumetoken-in-chat-websocket</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88011-traefik-forwardauth-identity-spoofing-via-header-alias</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88012-traefik-readtimeout-not-enforced-on-http-3-connections</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88060-angular-platform-server-ssr-xss-via-unescaped-template-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88056-angular-platform-server-ssrf-via-url-resolution-discrepancy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88059-angular-information-leak-in-httptransfercache-with-hierarchical</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88057-angular-sanitization-bypass-in-directive-host-bindings</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55416-pimcore-sql-injection-in-custom-reports-via-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89049-aws-systems-manager-agent-ssrf-in-session-manager-port-forwarding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85228-aws-deep-java-library-integer-overflow-in-tensor-buffer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86082-n8n-openai-chat-model-domain-restriction-bypass-in-model-search</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86081-n8n-regular-expression-denial-of-service-in-git-node-file-pattern</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86075-n8n-unauthenticated-storage-exhaustion-via-oauth-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86076-n8n-expression-sandbox-escape-via-class-field-sanitizer-rebinding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87017-open-webui-knowledge-tool-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87994-open-webui-message-authorship-bypass-in-channel-completions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87995-open-webui-account-takeover-via-port-preview-iframe-sandbox</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87996-open-webui-ssrf-via-dns-rebinding-in-playwright-web-loader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87997-open-webui-missing-folder-write-access-check-in-chat-completions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87998-open-webui-privilege-escalation-in-external-knowledge-connection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87999-open-webui-server-side-request-forgery-in-url-fetching</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88005-open-webui-oauth-token-exchange-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/eigenpal-docx-editor-css-injection-and-print-time-xss-via-font-family-24c5738e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/eigenpal-docx-editor-react-css-injection-and-xss-via-font-family-name-722ac5b4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84939-apache-freemarker-path-traversal-in-template-loading</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86060-mikrotik-routeros-argument-delimiter-neutralization-privilege</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67277-mikrotik-routeros-missing-authentication-in-btest-service</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88000-open-webui-denial-of-service-via-cyclic-chat-tree-message</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88001-open-webui-server-side-request-forgery-via-unvalidated-http</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88002-open-webui-infinite-loop-denial-of-service-in-chat-history</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59185-identrail-cross-tenant-idor-via-unverified-github-app</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59179-openhop-server-path-traversal-in-flow-id-file-operations</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59177-esphome-device-builder-auth-bypass-via-unrestricted-ingress</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59176-functype-mcp-server-set-functype-version-package-alias-rce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59172-joker-linter-arbitrary-code-execution-in-project-local-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/komari-management-interface-csrf-b9b45191</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59160-yeger-turbo-graph-unauthenticated-task-execution-via-api-run</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59158-nuxt-ollama-credentials-exposure-in-public-runtime-config</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59157-webhookd-unrestricted-http-header-to-shell-variable-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55864-geonetwork-unauthenticated-server-side-request-forgery-in-sld</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19642-aws-sdk-for-c-memory-safety-issues-in-base64-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18954-amazon-aws-labs-documentdb-mcp-server-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19111-aws-strands-agents-tools-insecure-direct-object-reference-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18952-opensearch-security-analytics-plugin-missing-input-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19311-opensearch-alerting-plugin-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18953-aws-transform-mcp-server-improper-pathname-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85781-amazon-efs-csi-driver-insufficient-access-point-ownership</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81838-awsdac-zip-slip-path-traversal-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83497-opensearch-sql-plugin-unrestricted-java-deserialization-in-cursor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75897-opensearch-dashboards-uncontrolled-resource-consumption-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84942-opensearch-dashboards-stored-xss-via-vega-expression-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85786-amazon-ion-java-memory-amplification-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85012-amazon-codecatalyst-blueprints-sdk-os-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85654-amazon-awslabs-dynamodb-mcp-server-code-injection-in-cdk</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87912-aws-security-agent-missing-s3-bucket-ownership-verification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18428-opensearch-sql-plugin-async-query-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85788-aws-labs-mysql-mcp-server-read-only-enforcement-bypass-via-sql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81849-amazon-ssm-agent-path-traversal-in-aws-downloadcontent-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85787-amazon-postgres-mcp-server-sql-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75935-amazon-ion-java-memory-amplification-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85028-aws-fpga-development-kit-arbitrary-code-execution-via-insecure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83551-amazon-sagemaker-python-sdk-cleartext-hmac-key-storage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84851-amazon-ion-c-uncontrolled-recursion-in-reader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85730-smol-toml-infinite-loop-in-parser-via-malformed-toml</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55073-weasyprint-server-side-request-forgery-and-local-file-read-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54529-sqladmin-unvalidated-sortby-parameter-in-modelview-bypasses</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53495-containerd-cri-execsync-goroutine-leak-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-50024-githacker-path-traversal-in-ref-parsing-enables-file-existence</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-44282-decidim-decidim-elections-stored-xss-in-question-titles</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-58363-lf-edge-ekuiper-path-traversal-in-plugin-installation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-24979-lf-edge-ekuiper-ssrf-in-external-service-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-24978-lf-edge-ekuiper-stored-xss-in-external-service-creation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-24890-gitoxidelabs-gix-sec-safe-directory-bypass-in-elevated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69304-microsoft-asp-net-core-iis-middleware-denial-of-service-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69522-microsoft-diasymreader-native-heap-buffer-overflow-in-pdb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69439-microsoft-diasymreader-native-heap-overflow-in-pdb-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71328-microsoft-diasymreader-native-heap-buffer-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19490-citrix-netscaler-authentication-bypass-via-alternate-path</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87491-google-chromium-v8-out-of-bounds-write-in-javascript-engine</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/containerd-cri-security-context-bypass-in-checkpoint-restore-d7cf36e0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86996-n8n-agent-workflow-tool-bypasses-sub-workflow-caller-policy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-idn-domain-allow-list-bypass-in-address-normalization-234ce721</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92598-nodemailer-idn-punycode-domain-allow-list-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92596-nodemailer-quadratic-time-complexity-in-address-parser-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-quadratic-time-complexity-in-address-parser-f6132e7e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-email-address-validation-bypass-in-rfc-5322-comment-parsing-c1300f22</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92597-nodemailer-recipient-domain-validation-bypass-via-rfc-5322</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typespec-openapi3-path-traversal-in-version-placeholder-4368a6df</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-typespec-openapi3-path-traversal-in-version-value-2fdcfbf7</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77078-multer-denial-of-service-via-crafted-multipart-field-names</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77037-express-multer-file-descriptor-leak-on-aborted-uploads</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77063-multer-file-size-limit-bypass-via-async-filefilter-race-condition</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82333-multer-denial-of-service-via-oversized-array-index-in-field-names</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-15603-express-js-morgan-log-forging-via-unicode-line-separators</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84452-microsoft-winml-cli-cors-misconfiguration-enables-localhost-rce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81525-mongodb-php-library-namespace-injection-in-database-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/astro-remote-code-execution-via-avif-image-processing-6b99ffe8</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/astro-remote-code-execution-through-avif-image-optimization-79155f65</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84376-astro-authorization-bypass-in-base-path-stripping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84361-composer-arbitrary-command-execution-via-malicious-perforce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/sharp-heap-based-buffer-overflow-via-libheif-image-parsing-6451a83e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/sharp-remote-code-execution-via-malformed-heif-image-32a48ae6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84375-js-yaml-denial-of-service-via-empty-merge-sources</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84308-phpseclib-x25519-non-constant-time-scalar-multiplication-private</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-redos-in-markdown-attribute-parsing-9e6d9287</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-quadratic-redos-in-markdown-attribute-parsing-7c4b0aab</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84365-hono-tossg-path-traversal-with-consecutive-parent-directory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84364-hono-parsebody-memory-exhaustion-with-unbounded-dot-notation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84363-hono-query-parser-fragment-interpretation-differential</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84445-grpc-go-xds-server-denial-of-service-via-missing-headers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/next-js-image-optimization-heap-buffer-overflow-via-avif-9ce530ed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/next-js-heap-buffer-overflow-in-image-optimization-via-malicious-avif-90b951e0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84370-svgo-removescripts-xss-bypass-via-namespace-and-control-character</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84369-svgo-removescripts-incomplete-html-sanitization-in-foreignobject</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-resolvecontent-sandbox-bypass-in-legacy-signature-09738384</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92595-nodemailer-resolvecontent-legacy-signature-security-sandbox</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83616-xmldom-processing-instruction-target-injection-in-serialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83617-xmldom-xmlserializer-requirewellformed-bypass-via-line-terminator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83608-xmldom-doctype-name-injection-bypasses-requirewellformed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83609-xmldom-name-qname-validation-bypass-via-embedded-line-terminator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83618-xmldom-requirewellformed-doctype-validation-bypass-via-line</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83611-xmldom-parser-silently-accepts-malformed-xml-end-tags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83613-xmldom-quadratic-time-attribute-deduplication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83619-xmldom-end-tag-whitespace-trim-redos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83615-xmldom-quadratic-memory-consumption-in-namespace-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83614-xmldom-quadratic-time-parsing-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83612-xmldom-html-raw-text-closing-tag-case-mismatch-causes-output</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84372-predis-redis-command-injection-in-pipelined-cluster-connections</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84368-joi-prototype-pollution-via-proto-in-custom-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85062-colord-regular-expression-denial-of-service-in-color-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75604-next-js-unauthenticated-remote-code-execution-on-windows</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84367-hapi-joi-object-rename-prototype-pollution-via-template-target</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85061-maplibre-gl-js-xss-sanitizer-bypass-in-dom-sanitize</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84303-grpc-go-xds-rbac-http-filter-bypass-via-case-sensitive-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84382-pydantic-httpx2-decompression-memory-amplification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84373-vitest-vitest-mocker-path-traversal-in-redirect-mock</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84380-pydantic-httpx2-http-request-smuggling-via-conflicting-headers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84379-httpx2-multipart-header-injection-via-unvalidated-content-type</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84378-httpx2-quadratic-sse-line-buffering-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84381-httpx2-secure-websocket-plaintext-transmission-via-socks-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73560-vllm-ssrf-and-arbitrary-file-read-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84374-laravel-excel-arbitrary-file-overwrite-via-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83606-xmldom-pi-grammar-regex-redos-in-unterminated-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83607-xmldom-element-name-injection-via-createelement</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83605-xmldom-setattribute-attribute-name-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81725-nltk-pl196xcorpusreader-quadratic-redos-on-malformed-tei-blocks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62815-microsoft-quic-use-after-free-in-path-migration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62900-microsoft-net-information-disclosure-in-git-and-sourcelink</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73558-vllm-integer-overflow-in-kernel-causing-cross-user-data-leak</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-visual-studio-heap-buffer-overflow-in-diasymreader-b617ae69</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-visual-studio-heap-buffer-overflow-in-diasymreader-20fcd9b2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-net-and-visual-studio-heap-buffer-overflow-elevation-of-02f3702a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-asp-net-core-iis-integration-denial-of-service-via-data-69730a19</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75595-netty-sni-routing-bypass-via-fragmented-tls-clienthello</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75596-netty-quadratic-pre-handshake-clienthello-reassembly-in-sni</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73087-dozzle-webhook-ssrf-guard-bypass-via-ipv6-transition-addresses</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69222-liquidjs-uncontrolled-resource-consumption-in-join-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73262-prowler-stored-xss-in-html-reports-through-unescaped-resource</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85063-csv-parse-prototype-pollution-via-columns-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72925-swc-html-minifier-script-injection-via-json-escaping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72789-siyuan-publish-access-gate-treats-encrypted-notebooks-as-public</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72790-siyuan-getnotebookinfo-unauthorized-disclosure-in-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-getattributeviewfieldviews-missing-authorization-cb8fd4f6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12259-nltk-missing-post-download-integrity-verification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76969-sap-cds-mtxs-credential-disclosure-in-multitenant-cap</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81963-microsoft-windows-privilege-escalation-via-link-following-in</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86218-n-able-n-central-static-code-injection-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85880-microsoft-windows-heap-based-buffer-overflow-in-advanced-local</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75650-adobe-commerce-and-magento-improper-neutralization-in-template</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typespec-spector-unauthenticated-remote-shutdown-via-post-admin-stop-da8e8fd5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typespec-spector-unauthenticated-remote-shutdown-547234f5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73557-vllm-concurrent-prompt-embedding-guard-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73556-vllm-redos-in-lm-format-enforcer-backend-regex-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73555-vllm-information-disclosure-via-validation-error-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72792-siyuan-tag-api-information-disclosure-via-password-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72793-siyuan-getconf-information-disclosure-of-session-key-and-secrets</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72795-siyuan-embedded-block-content-leak-via-missing-publish-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72794-siyuan-session-cookie-signing-key-disclosure-in-api-system</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72796-siyuan-static-routes-access-control-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72797-siyuan-getencryptednotebookstatus-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72798-siyuan-renderattributeview-missing-authorization-in-related</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72799-siyuan-missing-publish-access-filter-on-path-resolution-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75911-codewhale-project-config-allow-shell-override-enables-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75858-codewhale-rlm-eval-approval-bypass-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75912-codewhale-git-blame-argument-injection-allows-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75856-codewhale-ssrf-bypass-via-toctou-in-dns-pinning</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75915-codewhale-js-execution-environment-variable-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75913-codewhale-argument-injection-in-git-show-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75857-codewhale-exec-shell-interact-privilege-escalation-via-llm-input</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75859-codewhale-project-config-instructions-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75914-codewhale-image-analyze-symlink-path-traversal-in-vision-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/simplewebauthn-certificate-chain-validation-bypass-ee3041ed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/simplewebauthn-attestation-certificate-chain-validation-bypass-cd1a87f7</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85046-google-chromium-v8-type-confusion-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-4644-google-cloud-integration-connectors-http-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72800-siyuan-missing-authorization-filters-on-api-endpoints-leaks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72801-siyuan-encrypted-notebook-key-material-and-wrapped-keys</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72802-siyuan-resolveassetpath-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72803-siyuan-missing-publish-access-filter-on-getblockattrs-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72804-siyuan-graph-endpoints-bypass-publish-password-protection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72805-siyuan-missing-authorization-in-block-api-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72806-siyuan-attribute-view-database-password-bypass-in-publish-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72807-siyuan-second-order-sql-injection-via-queryblocks-template</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72808-siyuan-missing-authorization-on-getfileannotation-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72809-siyuan-kernel-localhost-trust-admin-bypass-on-auth-gated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72810-siyuan-publish-boundary-bypass-via-websocket-broadcast</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72811-siyuan-backlink-search-sql-injection-via-unescaped-metadata</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72812-siyuan-missing-authorization-in-refreshbacklink-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68584-siyuan-password-protected-document-bypass-via-content-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68585-siyuan-missing-authorization-in-getblockinfo-metadata-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68586-siyuan-getbacklinkdoc-getbackmentiondoc-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68587-siyuan-getheading-transaction-authorization-bypass-in-publish</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69083-siyuan-fulltextsearchassetcontent-sql-injection-and-regexp</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77465-toml-node-uncontrolled-recursion-in-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63376-npm-toml-prototype-pollution-via-proto-desynchronization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69086-siyuan-path-traversal-in-attribute-view-read-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71429-stream-json-path-filters-algorithmic-complexity-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69084-siyuan-arbitrary-sql-execution-via-searchembedblock</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73295-material-for-mkdocs-dom-xss-in-search-suggestions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82404-toon-format-prototype-pollution-in-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73232-ffuf-denial-of-service-via-http-response-decompression-bomb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61556-liquidjs-infinite-loop-in-strip-html-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75602-openlist-simplehttp-offline-download-path-traversal-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-feishu-permission-tools-authorization-bypass-4a298b98</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-feishu-tools-authorization-bypass-75a656d3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-path-traversal-in-export-temp-branch-6fc4f947</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-svg-sanitizer-bypass-leading-to-stored-and-reflected-xss-6a7a1f5f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72921-seaweedfs-filer-jwt-authorization-bypass-in-allowed-prefixes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84366-scrapy-s3downloadhandler-cleartext-transmission-of-aws</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63435-mail-email-address-spoofing-via-malformed-rfc-2047-encoded-words</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61842-grav-twig-sandbox-config-exfiltration-via-offsetget-and-dump</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61690-grav-ziparchiver-decompression-bomb-via-missing-extraction-limits</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83610-xmldom-xml-fragment-injection-in-entityreference-serialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-16732-fastify-x-forwarded-header-spoofing-in-trustproxy-numeric-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18504-fastify-schema-validation-bypass-via-root-primitive-coercion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82396-sulu-stored-xss-via-media-download-inline-disposition-override</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82394-sulu-authorization-bypass-in-preview-link-generation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82395-sulu-media-move-authorization-bypass-idor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75592-kirby-path-traversal-in-media-handling-via-sibling-directory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72920-seaweedfs-unauthenticated-filer-iam-grpc-service-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82562-npm-qs-array-limit-bypass-in-bracket-key-comma-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82417-qs-stringify-denial-of-service-via-unchecked-isbuffer-call</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-mergeattributes-prototype-pollution-leading-to-xss-32e26b93</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-mergeattributes-prototype-pollution-enabling-xss-94f4a025</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81892-easycorp-easyadminbundle-authorization-bypass-in-custom-action</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81887-livewire-dom-based-cross-site-scripting-in-client-side-state</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82397-tornado-urlencoded-body-parsing-dos-via-unbounded-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82398-pypdf-inefficient-handling-of-non-whitespace-inputs-in-read-until</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81891-elfinder-zip-extraction-mime-filter-bypass-allowing-php-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81890-elfinder-csrf-in-netmount-allows-forced-ftp-mounts</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82392-pnpm-virtual-store-linker-path-traversal-via-unvalidated-deppath</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82393-pnpm-tarball-dependency-manifest-name-path-traversal-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81722-nltk-porterstemmer-quadratic-time-dos-via-long-runs-of-y</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81727-nltk-downloader-hardlink-traversal-in-file-extraction</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81726-nltk-model-artifact-apis-sandbox-bypass-via-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81723-nltk-xmlcorpusview-quadratic-cpu-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12876-nltk-recursivedescentparser-uncontrolled-recursion-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81724-nltk-featstructreader-uncontrolled-recursion-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/imagemagick-memory-leak-in-cli-invalid-options-dc8e6305</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/humanfs-symlink-dereference-directory-traversal-b5fdd713</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/humanfs-symlink-dereference-allows-arbitrary-file-disclosure-4a851f9d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73231-faker-helpers-fake-arbitrary-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82329-jfrog-artifactory-improper-authentication-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83548-sonicwall-sma1000-server-side-request-forgery</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83549-sonicwall-sma1000-os-command-injection</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/google-gke-multi-cloud-authorization-bypass-in-cluster-registration-af138b69</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84304-grpc-go-heap-memory-exhaustion-via-http-2-data-frame</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84306-filament-app-based-multi-factor-authentication-bypass-via-reused</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84307-filament-password-validity-disclosure-in-login-mfa</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84310-pypdf-denial-of-service-via-malicious-pdf-outlines</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84311-pypdf-denial-of-service-via-crafted-xform-objects</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84309-pypdf-infinite-loop-in-treeobject-insert-child</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84305-sqlparse-quadratic-cpu-consumption-in-reindent-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84371-sanitize-html-stored-xss-via-svg-smil-uri-list-scheme-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-in-attributes-extension-932b44b3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-in-smartpunct-and-attributes-252cde7d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-xss-via-form-feed-in-attributesextension-d61618f5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-via-parsing-algorithms-d1480161</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tornado-multipart-form-data-memory-amplification-dos-in-httputil-py-5d8eb9f2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tornado-cookie-attribute-injection-via-case-insensitive-kwargs-c42b886c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73229-django-rest-framework-adminrenderer-permission-bypass-information</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73086-nanoid-integer-overflow-in-csprng-pool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-environment-variable-exfiltration-via-proxy-settings-5cfe8952</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-environment-secret-exfiltration-via-proxy-settings-in-workspace-f6626cca</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-pacquet-path-traversal-in-lockfile-dependency-symlinks-dc3f81d1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-pacquet-path-traversal-in-lockfile-install-2f692861</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mlflow-statsmodels-flavor-security-control-bypass-in-pickle-c4a0165d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-auth-plugin-downgrade-to-mysql-clear-password-leaks-credentials-620917f5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-auth-plugin-downgrade-to-mysql-clear-password-leaks-plaintext-4f504449</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62993-smarty-ssrf-via-redirect-bypass-in-fetch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69127-kirby-rest-api-information-disclosure-via-error-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-unbounded-zlib-inflate-decompression-bomb-6d425342</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-unbounded-zlib-inflate-decompression-bomb-dos-1b8791b1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71415-kirby-authorization-bypass-in-rest-api-file-uploads</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75594-kirby-path-traversal-in-media-handler-via-encoded-slashes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-tgrep-regular-expression-denial-of-service-02fca1b2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81888-hono-oauth-providers-oauth-state-validation-bypass-in-social</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81889-elfinder-ssrf-protection-bypass-via-dns-rebinding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-raw-message-option-bypasses-disablefileaccess-fb6da12e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-message-level-raw-option-ssrf-and-file-read-af1f28b4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82078-papercut-ng-mf-unsafe-reflection-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81578-papercut-ng-mf-missing-authentication-for-critical-function</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55855-mariadb-connector-node-js-sql-injection-in-buffer-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55860-mariadb-r2dbc-cleartext-password-disclosure-to-mitm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55859-mariadb-r2dbc-charset-confusion-leading-to-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55858-mariadb-java-client-charset-confusion-encoding-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55857-mariadb-connector-j-cleartext-password-transmission-in-pam</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55856-mariadb-connector-j-cleartext-password-disclosure-in-mitm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55848-mapfish-print-xxe-in-gml-layer-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55785-free5gc-ausf-non-constant-time-authentication-comparison-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55784-free5gc-ausf-authentication-context-race-condition</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55779-silverstripe-versioned-xss-in-archive-admin-restore</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55867-graylog-token-revocation-endpoint-idor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55841-graylog-syslog-parser-field-injection-in-key-value-message</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55764-klever-go-sft-add-quantity-int64-overflow-bypasses-maxsupply</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55854-mariadb-connector-node-js-cleartext-password-transmission-in-pam</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55678-arc-enterprise-authentication-bypass-in-cluster-node-admission</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55763-klever-klever-go-percentage-transfer-royalty-zero-debit-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55891-privatebin-reflected-json-injection-in-jsonld-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55696-privatebin-stored-xss-in-attachment-download-link</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/aiir-verification-and-policy-gates-fail-open-ab3a8d0c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55484-alos-http-unauthenticated-dos-in-sanitizerequestpath</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55634-pimcore-dataobject-class-definition-field-name-remote-code</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55220-pimcore-hotspotimage-unrestricted-php-object-deserialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55215-mariadb-connector-node-js-cleartext-password-disclosure-to-mitm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55247-plone-plone-app-event-denial-of-service-in-icalendar-import</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55520-protego-redos-in-robots-txt-wildcard-matching</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55248-plone-plone-app-portlets-denial-of-service-via-rss-feed-portlet</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55673-powsybl-core-os-command-injection-in-localcommandexecutor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55584-phpsysinfo-ip-allowlist-bypass-via-header-spoofing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55245-bifrost-ssrf-bypass-in-ispublicip-ip-classification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55485-piccolo-admin-privilege-escalation-via-session-token-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55509-wsgidav-mysqlbrowserprovider-blind-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55425-graylog-server-information-disclosure-in-system-catalog-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55566-yamcs-dom-xss-in-extension-routing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55565-yamcs-remote-code-execution-via-unescaped-streamsql-like-pattern</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55559-yamcs-remote-code-execution-via-yaml-injection-in-instance</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55552-yamcs-unauthenticated-directory-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55549-yamcs-reflected-xss-in-authorize-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55547-yamcs-missing-authorization-on-role-and-privilege-enumeration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55545-yamcs-websocket-subscription-handlers-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55521-yamcs-core-api-missing-authorization-in-multiple-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55511-yamcs-authenticated-rce-via-streamsql-column-name-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55068-free5gc-nrf-input-validation-bypass-in-nf-profile-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55067-vikunja-kanban-bucket-cross-tenant-relocation-via-mass-assignment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55065-vikunja-authorization-bypass-in-project-view-deletion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55064-vikunja-incomplete-privilege-escalation-fix-via-parent-project-id</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54766-vikunja-project-duplication-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54788-datadog-dd-trace-rs-unbounded-w3c-tracestate-parsing-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55834-pocket-id-open-redirect-in-oidc-authorize-page-with-prompt-none</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55569-aqua-archive-extraction-path-traversal-via-symlink</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54755-klever-integer-overflow-in-split-royalty-validation-enables</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54754-klever-marketplace-settlement-mints-klv-when-referral-and-royalty</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55108-kubevela-terraform-remote-loader-dos-via-unbounded-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gix-packetline-integer-underflow-in-side-band-packet-parsing-50c9592d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54746-hatchet-cross-tenant-authorization-bypass-in-dispatcher-grpc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-37004-berriai-litellm-server-side-template-injection-in-prompts</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-downloader-hardlink-filesystem-containment-bypass-522cb97d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-uncontrolled-recursion-in-featstructreader-denial-of-service-e246abcc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-path-traversal-in-model-artifact-apis-via-pathsec-bypass-a4651c73</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-pl196xcorpusreader-quadratic-redos-on-malformed-tei-blocks-8473e6ef</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-quadratic-cpu-exhaustion-in-xmlcorpusview-read-xml-fragment-439bc4da</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-porterstemmer-quadratic-time-dos-via-long-runs-of-y-b1fab99a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/crossplane-package-manager-signature-bypass-via-toctou-in-tag-c3cd8716</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54732-libreoffice-convert-path-traversal-in-filename-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54718-silverstripe-advanced-workflow-rce-in-email-template</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54687-n8n-nodes-sqlite3-path-traversal-via-user-controlled-database</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54713-cakephp-queue-incomplete-comparison-in-getuniqueid</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54721-silverstripe-userforms-remote-code-execution-in-email-subject</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2023-49105-owncloud-improper-authentication-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75328-docsys-arbitrary-file-read-in-downloaddocex</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65930-limesurvey-community-edition-stored-xss-in-replacement-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65647-plesk-symlink-resolution-vulnerability-in-file-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65646-plesk-dns-zone-management-improper-neutralization-of-special</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65642-plesk-insecure-direct-object-reference-in-database-management</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65641-veeam-one-smb-authentication-coercion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64632-veeam-one-ntlm-credential-capture-in-reporter-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63360-limesurvey-community-edition-reflected-xss-in-user-activation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61617-pterodactyl-wings-sftp-disk-quota-enforcement-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58070-veeam-backup-replication-cleartext-credential-logging</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55182-librenms-remote-code-execution-in-signal-alert-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-45694-librenms-reflected-xss-in-proxmox-application-component</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-43621-simple-machines-forum-authorization-bypass-in-profile-loader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21810-hcl-bigfix-quantum-risk-analyzer-hardcoded-resource-and-binary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21809-hcl-bigfix-quantum-risk-analyzer-information-disclosure-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-16809-limesurvey-community-edition-stored-cross-site-scripting-in-quota</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79921-rabbitmq-amqp091-go-memory-exhaustion-in-frame-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77573-weblate-dns-rebinding-ssrf-in-vcs-operations</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77507-weblate-rss-feed-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75415-antflow-authentication-bypass-via-header-forgery-in-request</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75414-antflow-juel-expression-injection-leading-to-command-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75413-docsys-unauthenticated-arbitrary-file-download-via-downloaddocex</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75411-jeecgboot-ai-flow-codenode-remote-command-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75364-comfast-cf-n1-s-command-injection-in-webmgnt</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75363-comfast-cf-wr630ax-command-injection-in-webmgnt</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62326-weblate-regex-denial-of-service-in-source-string-flags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62249-weblate-improper-authorization-in-nested-api-change-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61792-weblate-path-traversal-in-app-store-metadata-download</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61790-weblate-team-enforced-2fa-bypass-for-global-permissions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55228-weblate-idor-in-groupviewset-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55227-weblate-observable-object-existence-disclosure-via-http-status</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-52473-wgcloud-command-injection-in-test-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-52103-simplex-chat-terminal-notification-command-injection-rce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-39275-cockpit-cms-stored-xss-in-field-select-and-field-tags</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-15973-limesurvey-community-edition-stored-xss-in-survey-menu-entries</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61480-vanderbilt-acre-security-spc5300-denial-of-service-via-tcp-fin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61479-vanderbilt-acre-security-spc5300-000-denial-of-service-via-replay</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61478-vanderbilt-acre-security-spc5300-000-denial-of-service-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-51679-openrisc-or1200-rtl-to-netlist-mismatch-in-program-counter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-51675-openrisc-or1200-program-counter-update-logic-error</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79939-dell-powerprotect-cyber-recovery-symlink-following-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79938-dell-powerprotect-cyber-recovery-improper-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77652-gnome-dia-wpg-heap-buffer-overflow-in-colormap-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77508-weblate-unverified-email-change-in-rest-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75601-static-web-server-metrics-endpoint-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75334-smart-web2-sql-injection-in-report-module</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75327-docsys-uploadmarkdownpic-arbitrary-file-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74774-dell-powerprotect-one-improper-certificate-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74771-dell-powerprotect-one-authorization-bypass-in-user-controlled-key</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74770-dell-powerprotect-one-os-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71172-dell-cloud-disaster-recovery-server-side-request-forgery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71054-oracle-java-se-denial-of-service-in-2d-component</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68863-dell-powerprotect-one-stack-based-buffer-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68861-dell-powerprotect-one-os-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68000-mcms-sql-injection-in-cms-category-list</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67275-dell-powerprotect-one-cache-poisoning-via-insufficiently</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-66003-frappe-access-control-bypass-in-rest-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-60004-gitea-code-injection-in-diffpatch-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56547-hcl-traveler-apple-profile-improper-input-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54245-fleet-sql-injection-in-okta-conditional-access-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-49809-dell-powerprotect-cyber-recovery-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47848-spring-reactor-netty-websocket-credential-leak-on-cross-origin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47844-spring-reactor-netty-http-server-information-disclosure-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47843-reactor-netty-dns-resolver-reuse-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47842-spring-security-aesbytesencryptor-weak-iv-initialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47834-spring-data-jpa-sort-validation-bypass-via-crafted-parameters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-46371-fleet-sql-injection-in-apple-mdm-commands-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-46370-fleet-sql-injection-in-labels-host-listing-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-46369-nimiq-nimiq-blockchain-off-by-one-error-in-validity-store</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26449-stomper-stomp-message-broker-null-pointer-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26448-stomper-use-after-free-in-stomp-message-broker</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26447-stomper-stomp-broker-use-after-free-in-subscription-cleanup</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26446-stomper-stomp-broker-denial-of-service-from-unhandled-sigpipe</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-26445-stomper-stomp-message-broker-denial-of-service-via-partial-frames</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70340-thingsboard-professional-edition-broken-access-control-in-alarm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70293-denx-u-boot-integer-overflow-in-ext4fs-get-bgdtable</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-70290-denx-u-boot-integer-overflow-in-zfs-filesystem-support</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79940-dell-idrac9-improper-access-control-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75466-libjpeg-turbo-integer-division-by-zero-in-png-indexed-color</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75325-dwsurvey-authentication-bypass-in-api-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71171-dell-cloud-disaster-recovery-os-command-injection-in-rest-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70419-dell-cloud-disaster-recovery-os-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63179-winter-cms-local-file-inclusion-via-less-import-directives</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-51106-toktok-qtox-denial-of-service-in-settingsserializer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-48786-fleet-information-disclosure-in-target-search-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-41262-fleet-dm-cross-team-policy-data-exposure-in-global-policy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-36851-unpoller-path-traversal-in-password-field-allows-arbitrary-file</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19485-google-cloud-vertex-ai-sdk-predictable-bucket-name-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61165-cohere-north-arbitrary-file-upload-leading-to-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61164-cohere-north-ai-information-disclosure-via-websocket-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61163-cohere-north-ai-improper-cross-domain-policy-in-websocket</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-61162-cohere-north-ai-access-control-bypass-in-user-management-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-redos-in-text-findall-via-unvalidated-regex-70befad1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76784-tp-link-kasa-insufficient-cryptographic-protection-in-device</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58474-whichllm-code-injection-in-run-and-snippet-commands</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54256-winter-cms-fileupload-widget-idor-in-attachment-metadata</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47841-spring-security-webauthn-user-verification-bypass-in-distributed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47837-spring-cloud-config-missing-authentication-on-monitor-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47836-spring-cloud-config-server-svn-base-directory-toctou</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32639-winter-cms-broken-access-control-in-cms-controllers-index</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32593-winter-cms-sql-injection-in-backend-filter-widget-numberrange</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-56798-lime-technology-unraid-csrf-via-lax-samesite-cookie-policy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-29419-ctfd-man-in-the-middle-attack-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2023-42179-bird-d1101v-f-access-control-bypass-in-key-derivation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-44701-openstamanager-html-injection-in-group-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/librenms-stored-xss-via-snmp-syslog-data-in-legacy-templates-a27e8a90</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80153-rejected-invalid-advisory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35445-winter-cms-authorization-bypass-in-users-controller</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32258-winter-cms-stored-xss-in-editor-settings-custom-styles</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32257-winter-cms-stored-xss-in-brand-settings-custom-styles</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2020-15878-librenms-sql-injection-in-ajax-table-php</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2020-15876-librenms-sql-injection-in-ajax-table-php-sort-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2020-15874-librenms-command-injection-in-graph-php-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81036-stalwart-mail-server-oauth-redirect-target-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81035-midday-privilege-escalation-via-missing-role-check-in-team</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81034-netmaker-disabled-tls-certificate-verification-in-smtp-client</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81033-automatisch-user-enumeration-in-forgot-password-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81032-nebulagraph-unauthenticated-runtime-configuration-exposure-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81031-idurar-erp-crm-privilege-escalation-via-password-reset</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81030-mage-ai-path-traversal-in-browser-items-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81029-openmetadata-token-leakage-via-unvalidated-post-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81028-zlmediakit-downloadfile-api-directory-traversal-via-prefix</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81027-one-api-channel-authorization-bypass-via-url-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80428-ilias-php-object-injection-in-lti-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80427-bestzip-argument-injection-in-native-zip-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80426-fiftyone-stored-xss-in-dataset-field-description</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54614-cakephp-debugkit-mailpreview-unsafe-reflection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54606-suneditor-embed-plugin-dom-xss-via-external-script-element</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54569-senaite-core-unauthenticated-rce-via-eval-injection-and-missing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-48549-nagios-core-csrf-vulnerability-in-cmd-cgi</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-48548-nagios-core-csrf-bypass-in-cmd-cgi</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80589-linux-kernel-block-subsystem-timeout-timer-use-after-free</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80588-linux-kernel-mptcp-forward-allocated-memory-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80587-linux-kernel-mptcp-suboption-parsing-logic-error</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80586-linux-kernel-mptcp-dss-option-parsing-information-leak</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80585-linux-kernel-mptcp-fastopen-state-confusion-in-subflow-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80584-linux-kernel-buffer-underflow-in-qeth-snmp-and-arp-query-ioctls</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80583-linux-kernel-lpass-tx-macro-enum-kcontrol-buffer-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80582-linux-kernel-drm-shmem-helper-pmd-mapping-boundary-check</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80581-linux-kernel-asoc-sof-ipc4-pcm-pipeline-trigger-timeout-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80580-linux-kernel-fbdev-buffer-overflow-in-sysfs-mode-output</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80579-linux-kernel-fbdev-use-after-free-in-videomode-deletion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80578-linux-kernel-fbdev-pointer-desynchronization-in-fb-io-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80577-linux-kernel-drm-panthor-null-pointer-dereference-in-firmware</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80576-linux-kernel-amdgpu-integer-overflow-in-indirect-buffer-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80575-linux-kernel-cs40l50-vibra-input-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80574-linux-kernel-focaltech-driver-array-out-of-bounds-in-focaltech</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80573-linux-kernel-iforce-input-driver-buffer-over-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80572-linux-kernel-byd-input-driver-use-after-free-in-timer-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80571-linux-kernel-powerpc-pseries-papr-phy-attest-buffer-overflow-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80570-linux-kernel-synaptics-rmi4-heap-buffer-overflow-in-f54</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80569-linux-kernel-synaptics-rmi4-buffer-overflow-in-f54-report</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80568-linux-kernel-synaptics-rmi4-heap-buffer-overflow-in-f54</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80567-linux-kernel-synaptics-rmi4-f54-worker-error-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80566-linux-kernel-hynitron-cstxxx-input-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80565-linux-kernel-qce-crypto-algorithm-registration-error-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80564-linux-kernel-gve-null-dereference-in-ptp-adjfine</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80563-linux-kernel-gpio-sloppy-logic-analyzer-use-after-free-in-debugfs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80562-linux-kernel-gpio-ml-ioh-spinlock-type-fix</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80561-linux-kernel-libceph-decode-buffer-overflow-in-cls-lock-client</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80560-linux-kernel-openrisc-privilege-escalation-via-signal-return</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80559-linux-kernel-sur40-touchscreen-driver-input-device-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80557-linux-kernel-libceph-out-of-bounds-read-in-decode-watchers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80556-linux-kernel-atmel-mci-use-after-free-in-atmci-remove</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80555-linux-kernel-s390-vfio-ccw-memory-leak-in-cp-init</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80554-linux-kernel-s390-vfio-ccw-stack-overflow-in-channel-program</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80553-linux-kernel-s390-vfio-ccw-use-after-free-in-workqueue-cleanup</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80552-linux-kernel-s390-vfio-ccw-out-of-bounds-access-in-region</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80551-linux-kernel-s390-vfio-ccw-race-condition-in-idaw-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80550-linux-kernel-out-of-bounds-read-in-s390-vfio-ccw-ccw-chain</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80549-linux-kernel-s390-vfio-ccw-locking-deadlock</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80548-linux-kernel-s390-vfio-ccw-race-condition-in-io-mutex-locking</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80547-linux-kernel-s390-vfio-ccw-data-race-in-crw-list-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80546-linux-kernel-s390-zcrypt-integer-and-arithmetic-overflow-in-cca</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80545-linux-kernel-s390-zcrypt-ep11-cprb-buffer-overflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80544-linux-kernel-zcrypt-improper-asn-1-parsing-in-ep11-cprb-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80543-linux-kernel-s390-zcrypt-information-disclosure-in-cca-and-ep11</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80542-linux-kernel-null-pointer-dereference-in-amdgpu-dm-crtc-set</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80541-linux-kernel-amdgpu-input-validation-flaw-in-gem-create-ioctl</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80540-linux-kernel-amd-gpu-uvd-integer-overflow-in-image-size</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80539-linux-kernel-amdgpu-resource-leak-via-duplicate-fence-chunks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80538-linux-kernel-xfs-error-handling-bypass-in-growfs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80537-linux-kernel-xfs-rtrefcount-btree-off-by-one-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80536-linux-kernel-xfs-buffer-log-item-bounds-check-heap-corruption</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80535-linux-kernel-xfs-double-lock-in-directory-tree-repair</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80534-linux-kernel-xfs-ilock-leak-in-quota-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80533-linux-kernel-xfs-null-pointer-dereference-in-agi-repair</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80532-linux-kernel-xfs-infinite-loop-in-online-fsck-iunlink-repair</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80531-linux-kernel-xfs-use-after-free-in-xrep-tempfile-create</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80530-linux-kernel-xfs-exchange-range-reflink-flag-corruption</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80529-linux-kernel-xfs-dquot-recovery-verification-error-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80528-linux-kernel-ceph-fs-reclaim-memory-corruption-in-mds-reply</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80527-linux-kernel-ceph-hang-in-ceph-get-caps-with-stale-mds-wanted</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80526-linux-kernel-tas2562-array-index-validation-in-volume-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80525-linux-kernel-asoc-sof-ipc4-topology-stale-copier-ipc-payload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80524-linux-kernel-null-dereference-in-op-tee-ffa-protected-memory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80523-linux-kernel-clock-management-denial-of-service-in-spacemit-k3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80522-linux-kernel-tegra-crypto-buffer-overflow-in-gcm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80521-linux-kernel-af-unix-garbage-collection-use-after-free</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80520-linux-kernel-ovpn-null-pointer-dereference-in-crypto-key</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80519-linux-kernel-ovpn-module-use-after-free-in-crypto-callback</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75062-google-langfun-arbitrary-code-execution-via-eval-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74754-linux-kernel-scsi-core-runtime-pm-reference-count-underflow</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74753-linux-kernel-perf-use-after-free-in-event-group-attachment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74752-linux-kernel-sctp-auth-cookie-validation-out-of-bounds-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74751-linux-kernel-risc-v-lib-strnlen-buffer-over-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74750-linux-kernel-openvpn-driver-memory-safety-in-cryptographic</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74749-linux-kernel-hard-lockup-in-rseq-time-slice-extension</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74747-linux-kernel-ip-virtual-server-out-of-bounds-access-in-icmp</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74746-linux-kernel-netfilter-flowtable-use-after-free-in-flow-insertion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74745-linux-kernel-bnxt-driver-deadlock-in-irq-affinity-notifier</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74744-linux-kernel-ipvlan-memory-safety-vulnerability-in-packet-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74743-linux-kernel-macvlan-buffer-overflow-in-packet-header-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74742-linux-kernel-veth-queue-index-bug-in-gro-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74741-linux-kernel-ngbe-null-pointer-dereference-in-interrupt-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74740-linux-kernel-networking-scheduler-toctou-null-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74739-linux-kernel-cls-u32-slab-out-of-bounds-read-in-u32-bind-class</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74738-linux-kernel-regmap-sdw-mbq-null-pointer-dereference</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74737-linux-kernel-am65-cpsw-nuss-port-id-extraction-out-of-bounds</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74736-linux-kernel-net-sched-cls-bpf-device-bound-program-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74735-linux-kernel-l2tp-refcount-leak-on-seq-file-release</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-74734-linux-kernel-firewire-ohci-null-pointer-dereference-in-ar-context</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54556-http4s-http-2-denial-of-service-in-hpack-header-compression</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54553-starlette-admin-unvalidated-order-by-parameter-information</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54550-izpack-path-traversal-in-unpackerbase</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54548-siemens-kas-ssh-host-key-checking-configuration-weakness</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54523-kyverno-namespacedmutatingpolicy-generator-apply-namespace</loc><lastmod>2026-09-25</lastmod></url>
</urlset>
