<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url><loc>https://junglewise.ai/threats/cve-2026-56744-bsv-wallet-toolbox-storage-output-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-96883-aws-pgcollection-type-confusion-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93289-eufy-omni-c20-and-x10-pro-os-command-injection-and-certificate</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84399-botslab-g980h-dashcam-multiple-authentication-and-authorization</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-5430-wso2-api-control-plane-path-traversal-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71362-adobe-commerce-and-magento-incorrect-authorization</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/third-party-ics-integrators-supply-chain-risk-to-critical-90b78f9a</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18655-aws-amazon-mq-mcp-server-credential-disclosure-via-prompt</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-94384-amazon-connect-salesforce-lambda-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56682-9router-login-brute-force-lockout-bypass-via-spoofable-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58272-sync-in-server-username-enumeration-via-timing-side-channel-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58271-sync-in-server-totp-brute-force-in-sync-registration</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89207-siemens-wtv676-and-wtv776-denial-of-service-via-input-validation</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-50093-siemens-siveillance-control-arbitrary-file-upload-in-ois-web</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67367-siemens-simove-fleetmanager-and-siplant-path-traversal</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87121-lwip-tcp-ip-stack-mqtt-client-application-out-of-bounds-write</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-34223-siemens-desigo-cc-code-injection-in-graphics-documents</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-88020-openplc-runtime-v3-cross-site-scripting-in-web-interface</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91018-lwip-double-free-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-94127-f5-big-ip-apm-heap-based-buffer-overflow</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93952-arista-velocloud-orchestrator-improper-input-validation</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-93616-check-point-multiple-products-path-traversal-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85102-check-point-security-gateway-and-spark-firewall-improper</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-91127-file-viewer-dom-xss-via-unsafe-hyperlink-schemes-in-legacy-doc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84992-md-editor-v3-cross-site-scripting-in-code-fence-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92943-aws-iot-device-sdk-for-python-certificate-host-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13348-schneider-electric-powerchute-serial-shutdown-improper</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-6625-schneider-electric-modicon-m340-improper-input-validation-in-ftp</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-15688-mitsubishi-electric-gx-works3-authentication-bypass-in-block</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86520-bransys-eld-hardcoded-credentials-and-cleartext-transmission</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-4872-hitachi-energy-facts-control-platform-multiple-vulnerabilities-in</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-13336-schneider-electric-netbotz-5-750-755-os-command-injection-and-sql</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86831-amazon-eks-aws-network-policy-agent-cross-namespace-networkpolicy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cisa-cyber-decoys-guidance-for-detection-and-response-4396c45f</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58704-google-pixel-improper-authorization-in-cellular-modem</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76460-cisco-identity-services-engine-incorrect-privileged-api-use</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87886-acronis-backup-privilege-escalation-in-cpanel-whm-and-plesk</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61559-zereight-mcp-gitlab-server-side-request-forgery-in-dynamic-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81861-schneider-electric-scadapack-x70-insufficiently-protected</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86830-aws-team-privilege-escalation-in-iam-identity-center</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76461-cisco-secure-email-gateway-sql-injection</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61534-yayson-prototype-pollution-in-store-legacystore-deserialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89332-kiro-ide-sensitive-workspace-data-exfiltration-via-agent-written</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89090-aws-sdk-for-go-v2-denial-of-service-in-eventstream-header-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18061-aws-advanced-jdbc-wrapper-xxe-in-remotequerycacheplugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89065-projen-path-traversal-in-file-manifest-cleanup</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84869-connectwise-screenconnect-unauthorized-file-transfer-and</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-42018-jfrog-artifactory-improper-authentication-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85706-gitlab-community-and-enterprise-edition-path-traversal-in-commits</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59965-jhb-software-payload-alt-text-plugin-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59960-argos-ci-core-os-command-injection-in-git-branch-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86077-n8n-approval-gate-bypass-via-reused-resumetoken-in-chat-websocket</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-89049-aws-systems-manager-agent-ssrf-in-session-manager-port-forwarding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85228-aws-deep-java-library-integer-overflow-in-tensor-buffer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86082-n8n-openai-chat-model-domain-restriction-bypass-in-model-search</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86060-mikrotik-routeros-argument-delimiter-neutralization-privilege</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67277-mikrotik-routeros-missing-authentication-in-btest-service</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59160-yeger-turbo-graph-unauthenticated-task-execution-via-api-run</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19642-aws-sdk-for-c-memory-safety-issues-in-base64-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18954-amazon-aws-labs-documentdb-mcp-server-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19111-aws-strands-agents-tools-insecure-direct-object-reference-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18952-opensearch-security-analytics-plugin-missing-input-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18656-kiro-ide-and-cli-executable-resolution-from-untrusted-directory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19311-opensearch-alerting-plugin-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18830-amazon-bedrock-agentcore-insufficient-input-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18953-aws-transform-mcp-server-improper-pathname-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85781-amazon-efs-csi-driver-insufficient-access-point-ownership</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81838-awsdac-zip-slip-path-traversal-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78379-amazon-strands-agents-tools-python-repl-consent-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83497-opensearch-sql-plugin-unrestricted-java-deserialization-in-cursor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75897-opensearch-dashboards-uncontrolled-resource-consumption-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84942-opensearch-dashboards-stored-xss-via-vega-expression-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85786-amazon-ion-java-memory-amplification-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85012-amazon-codecatalyst-blueprints-sdk-os-command-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77234-aws-freertos-kernel-memory-safety-issues</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85654-amazon-awslabs-dynamodb-mcp-server-code-injection-in-cdk</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75910-aws-athena-clickhouse-connector-privilege-escalation-in-secrets</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87912-aws-security-agent-missing-s3-bucket-ownership-verification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18428-opensearch-sql-plugin-async-query-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85788-aws-labs-mysql-mcp-server-read-only-enforcement-bypass-via-sql</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81849-amazon-ssm-agent-path-traversal-in-aws-downloadcontent-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85787-amazon-postgres-mcp-server-sql-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75935-amazon-ion-java-memory-amplification-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85028-aws-fpga-development-kit-arbitrary-code-execution-via-insecure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77811-opensearch-dashboards-stored-cross-site-scripting-in-integration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83551-amazon-sagemaker-python-sdk-cleartext-hmac-key-storage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84851-amazon-ion-c-uncontrolled-recursion-in-reader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77810-aws-athena-federated-query-neptune-connector-credential-exposure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19490-citrix-netscaler-authentication-bypass-via-alternate-path</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-87491-google-chromium-v8-out-of-bounds-write-in-javascript-engine</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-92596-nodemailer-quadratic-time-complexity-in-address-parser-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typespec-openapi3-path-traversal-in-version-placeholder-4368a6df</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82333-multer-denial-of-service-via-oversized-array-index-in-field-names</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/astro-remote-code-execution-via-avif-image-processing-6b99ffe8</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84376-astro-authorization-bypass-in-base-path-stripping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84375-js-yaml-denial-of-service-via-empty-merge-sources</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/next-js-image-optimization-heap-buffer-overflow-via-avif-9ce530ed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84369-svgo-removescripts-incomplete-html-sanitization-in-foreignobject</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83608-xmldom-doctype-name-injection-bypasses-requirewellformed</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83609-xmldom-name-qname-validation-bypass-via-embedded-line-terminator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85062-colord-regular-expression-denial-of-service-in-color-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84374-laravel-excel-arbitrary-file-overwrite-via-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83607-xmldom-element-name-injection-via-createelement</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83605-xmldom-setattribute-attribute-name-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81725-nltk-pl196xcorpusreader-quadratic-redos-on-malformed-tei-blocks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80206-nltk-tgrep-regular-expression-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-80205-nltk-redos-in-text-findall-via-unvalidated-regex</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62815-microsoft-quic-use-after-free-in-path-migration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62900-microsoft-net-information-disclosure-in-git-and-sourcelink</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73558-vllm-integer-overflow-in-kernel-causing-cross-user-data-leak</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78679-gitpython-tagreference-create-argument-injection-bypasses-file</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78677-gitpython-clone-from-omits-separate-git-dir-from-denylist</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78678-gitpython-arbitrary-file-read-in-repo-blame-via-incomplete-option</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78676-gitpython-config-parser-multi-line-value-injection-in-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78675-gitpython-arbitrary-local-file-content-disclosure-via-gitmodules</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75595-netty-sni-routing-bypass-via-fragmented-tls-clienthello</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75596-netty-quadratic-pre-handshake-clienthello-reassembly-in-sni</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71494-infracost-terraform-cloud-token-disclosure-via-unvalidated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71493-infracost-path-traversal-via-symlink-following-in-config-template</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73087-dozzle-webhook-ssrf-guard-bypass-via-ipv6-transition-addresses</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69222-liquidjs-uncontrolled-resource-consumption-in-join-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73262-prowler-stored-xss-in-html-reports-through-unescaped-resource</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85063-csv-parse-prototype-pollution-via-columns-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72925-swc-html-minifier-script-injection-via-json-escaping</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73294-semaphore-ui-os-command-injection-in-git-repository-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-60004-gitea-code-injection-in-diffpatch-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72789-siyuan-publish-access-gate-treats-encrypted-notebooks-as-public</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72790-siyuan-getnotebookinfo-unauthorized-disclosure-in-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-getattributeviewfieldviews-missing-authorization-cb8fd4f6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79674-nltk-corpus-reader-sandbox-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79676-nltk-corpus-readers-symlink-boundary-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79657-nltk-remote-code-execution-via-unsafe-pickle-deserialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78681-nltk-entity-expansion-denial-of-service-via-elementtree-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78682-nltk-pathsec-ssrf-bypass-with-http-proxy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78683-nltk-unsafe-pickle-deserialization-in-transitionparser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62383-nltk-ipipancorpusreader-symlink-based-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62384-nltk-framenetcorpusreader-symlink-sandbox-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62385-nltk-framenet-and-nkjp-readers-path-traversal-via-corpus</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12259-nltk-missing-post-download-integrity-verification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63312-nltk-streambackedcorpusview-pathsec-enforce-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65915-nltk-filesystempathpointer-sandbox-bypass-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70626-nltk-symlink-escape-in-corpusreader-local-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81963-microsoft-windows-privilege-escalation-via-link-following-in</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-86218-n-able-n-central-static-code-injection-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85880-microsoft-windows-heap-based-buffer-overflow-in-advanced-local</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75650-adobe-commerce-and-magento-improper-neutralization-in-template</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typespec-spector-unauthenticated-remote-shutdown-via-post-admin-stop-da8e8fd5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73842-openchoreo-cluster-gateway-missing-authentication-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73557-vllm-concurrent-prompt-embedding-guard-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73556-vllm-redos-in-lm-format-enforcer-backend-regex-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73555-vllm-information-disclosure-via-validation-error-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71486-vllm-derender-endpoints-unbounded-token-decoding-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72792-siyuan-tag-api-information-disclosure-via-password-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72793-siyuan-getconf-information-disclosure-of-session-key-and-secrets</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72795-siyuan-embedded-block-content-leak-via-missing-publish-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72794-siyuan-session-cookie-signing-key-disclosure-in-api-system</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72796-siyuan-static-routes-access-control-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72797-siyuan-getencryptednotebookstatus-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72798-siyuan-renderattributeview-missing-authorization-in-related</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72799-siyuan-missing-publish-access-filter-on-path-resolution-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75911-codewhale-project-config-allow-shell-override-enables-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75858-codewhale-rlm-eval-approval-bypass-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75912-codewhale-git-blame-argument-injection-allows-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75856-codewhale-ssrf-bypass-via-toctou-in-dns-pinning</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75915-codewhale-js-execution-environment-variable-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75913-codewhale-argument-injection-in-git-show-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75857-codewhale-exec-shell-interact-privilege-escalation-via-llm-input</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75859-codewhale-project-config-instructions-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75914-codewhale-image-analyze-symlink-path-traversal-in-vision-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/simplewebauthn-certificate-chain-validation-bypass-ee3041ed</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-85046-google-chromium-v8-type-confusion-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72800-siyuan-missing-authorization-filters-on-api-endpoints-leaks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72801-siyuan-encrypted-notebook-key-material-and-wrapped-keys</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72802-siyuan-resolveassetpath-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72803-siyuan-missing-publish-access-filter-on-getblockattrs-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72804-siyuan-graph-endpoints-bypass-publish-password-protection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72805-siyuan-missing-authorization-in-block-api-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72806-siyuan-attribute-view-database-password-bypass-in-publish-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72807-siyuan-second-order-sql-injection-via-queryblocks-template</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72808-siyuan-missing-authorization-on-getfileannotation-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72809-siyuan-kernel-localhost-trust-admin-bypass-on-auth-gated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72810-siyuan-publish-boundary-bypass-via-websocket-broadcast</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72811-siyuan-backlink-search-sql-injection-via-unescaped-metadata</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72812-siyuan-missing-authorization-in-refreshbacklink-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68584-siyuan-password-protected-document-bypass-via-content-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68585-siyuan-missing-authorization-in-getblockinfo-metadata-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68586-siyuan-getbacklinkdoc-getbackmentiondoc-authorization-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68587-siyuan-getheading-transaction-authorization-bypass-in-publish</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69083-siyuan-fulltextsearchassetcontent-sql-injection-and-regexp</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77465-toml-node-uncontrolled-recursion-in-parser</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63376-npm-toml-prototype-pollution-via-proto-desynchronization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69086-siyuan-path-traversal-in-attribute-view-read-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71429-stream-json-path-filters-algorithmic-complexity-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69084-siyuan-arbitrary-sql-execution-via-searchembedblock</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79921-rabbitmq-amqp091-go-memory-exhaustion-in-frame-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63670-sanitize-html-xss-bypass-via-textarea-solidus-close-tag</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63669-apostrophecms-page-move-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73295-material-for-mkdocs-dom-xss-in-search-suggestions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82404-toon-format-prototype-pollution-in-decoder</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73222-claude-code-templates-os-command-injection-in-studio-server</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73293-semaphore-ui-privilege-escalation-via-role-slug-collision</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73292-semaphore-ui-csrf-in-password-change-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62681-orval-code-injection-via-openapi-path-template-literal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62682-orval-code-injection-via-unescaped-server-url-in-template-literal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72717-orval-zod-schema-code-injection-via-unescaped-default-value</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71869-orval-code-injection-in-zod-schema-generation-via-template</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71871-orval-code-injection-in-zod-schema-generation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71867-orval-rce-via-schema-property-name-computed-property-key</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71868-orval-template-literal-injection-in-zod-schema-defaults</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71865-orval-zod-code-injection-via-unescaped-query-parameter-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71864-orval-zod-client-import-time-rce-via-header-parameter-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73232-ffuf-denial-of-service-via-http-response-decompression-bomb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61625-victoriametrics-vmrestore-path-traversal-in-backup-restore</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61556-liquidjs-infinite-loop-in-strip-html-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75602-openlist-simplehttp-offline-download-path-traversal-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-feishu-permission-tools-authorization-bypass-4a298b98</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openclaw-feishu-tools-authorization-bypass-75a656d3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71428-unstructured-partition-server-side-request-forgery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-path-traversal-in-export-temp-branch-6fc4f947</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-svg-sanitizer-bypass-leading-to-stored-and-reflected-xss-6a7a1f5f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73846-ckan-mcp-server-cache-key-canonicalization-collision</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73844-ckan-mcp-server-information-disclosure-via-error-reflection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73667-openchoreo-os-command-injection-in-workflow-plane-templates</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73840-openchoreo-webhook-signature-bypass-in-autobuild-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73841-openchoreo-openchoreo-api-authorization-bypass-in-exec-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73843-openchoreo-cluster-gateway-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67445-mailpit-smtp-command-parser-unbounded-buffering-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72921-seaweedfs-filer-jwt-authorization-bypass-in-allowed-prefixes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67446-mailpit-thumbnail-generation-unbounded-image-dimension-decode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84366-scrapy-s3downloadhandler-cleartext-transmission-of-aws</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68921-dicebear-svg-injection-via-unescaped-numeric-options</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62676-omnigent-shell-command-parser-policy-bypass-in-shell-py</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65842-plate-docx-export-ssrf-with-response-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63490-handlebars-java-springtemplateloader-arbitrary-file-read-via-url</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63481-hurl-cookie-leak-on-cross-host-redirects</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63435-mail-email-address-spoofing-via-malformed-rfc-2047-encoded-words</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62669-grav-2fa-bypass-via-unauthorized-secret-regeneration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62677-omnigent-path-traversal-in-agent-bundle-os-env-cwd</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62674-omnigent-shared-agent-bundle-overwrite-leading-to-authenticated</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62675-omnigent-authenticated-remote-code-execution-via-python-callable</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61842-grav-twig-sandbox-config-exfiltration-via-offsetget-and-dump</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61690-grav-ziparchiver-decompression-bomb-via-missing-extraction-limits</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61704-link-preview-js-dns-rebinding-ssrf-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75931-fastify-fast-uri-host-confusion-via-skipped-idn-canonicalization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75975-fast-uri-server-side-request-forgery-via-malformed-ipv6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75899-fast-uri-server-side-request-forgery-via-double-percent-decoding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76172-fast-uri-host-confusion-via-percent-encoded-scheme-normalization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62388-nltk-pathsec-insecure-default-configuration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63311-nltk-ssrf-fail-open-in-validate-network-url-via-dns-resolution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83610-xmldom-xml-fragment-injection-in-entityreference-serialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76098-mistune-uncontrolled-recursion-in-html-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-16732-fastify-x-forwarded-header-spoofing-in-trustproxy-numeric-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18504-fastify-schema-validation-bypass-via-root-primitive-coercion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82396-sulu-stored-xss-via-media-download-inline-disposition-override</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82394-sulu-authorization-bypass-in-preview-link-generation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82395-sulu-media-move-authorization-bypass-idor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63667-apostrophecms-import-export-path-traversal-arbitrary-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75592-kirby-path-traversal-in-media-handling-via-sibling-directory</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62680-orval-ssrf-and-file-inclusion-via-unrestricted-ref-resolution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72716-orval-code-generation-rce-via-unescaped-template-literals-in-zod</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71866-orval-zod-client-import-time-rce-via-property-name-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73845-ckan-mcp-server-allowlist-bypass-via-unanchored-regex-in-mqa</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72920-seaweedfs-unauthenticated-filer-iam-grpc-service-authentication</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64850-grav-remote-code-execution-via-unrestricted-callable-in-blueprint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82562-npm-qs-array-limit-bypass-in-bracket-key-comma-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82417-qs-stringify-denial-of-service-via-unchecked-isbuffer-call</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tiptap-mergeattributes-prototype-pollution-leading-to-xss-32e26b93</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81892-easycorp-easyadminbundle-authorization-bypass-in-custom-action</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81887-livewire-dom-based-cross-site-scripting-in-client-side-state</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82397-tornado-urlencoded-body-parsing-dos-via-unbounded-fields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71492-banks-directorypromptregistry-path-traversal-in-set</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82398-pypdf-inefficient-handling-of-non-whitespace-inputs-in-read-until</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81891-elfinder-zip-extraction-mime-filter-bypass-allowing-php-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81890-elfinder-csrf-in-netmount-allows-forced-ftp-mounts</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82392-pnpm-virtual-store-linker-path-traversal-via-unvalidated-deppath</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82393-pnpm-tarball-dependency-manifest-name-path-traversal-arbitrary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81722-nltk-porterstemmer-quadratic-time-dos-via-long-runs-of-y</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81727-nltk-downloader-hardlink-traversal-in-file-extraction</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81726-nltk-model-artifact-apis-sandbox-bypass-via-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81723-nltk-xmlcorpusview-quadratic-cpu-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12876-nltk-recursivedescentparser-uncontrolled-recursion-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81724-nltk-featstructreader-uncontrolled-recursion-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/imagemagick-memory-leak-in-cli-invalid-options-dc8e6305</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/humanfs-symlink-dereference-directory-traversal-b5fdd713</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73231-faker-helpers-fake-arbitrary-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82329-jfrog-artifactory-improper-authentication-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83548-sonicwall-sma1000-server-side-request-forgery</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-83549-sonicwall-sma1000-os-command-injection</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84304-grpc-go-heap-memory-exhaustion-via-http-2-data-frame</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-19418-typo3-cms-broken-access-control-in-backend-and-install-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84306-filament-app-based-multi-factor-authentication-bypass-via-reused</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84307-filament-password-validity-disclosure-in-login-mfa</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77567-filament-multi-factor-authentication-bypass-in-app-based-mfa</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84310-pypdf-denial-of-service-via-malicious-pdf-outlines</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84311-pypdf-denial-of-service-via-crafted-xform-objects</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84309-pypdf-infinite-loop-in-treeobject-insert-child</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84305-sqlparse-quadratic-cpu-consumption-in-reindent-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-84371-sanitize-html-stored-xss-via-svg-smil-uri-list-scheme-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-79675-nltk-jvm-argument-injection-bypass-in-stanford-wrappers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-in-attributes-extension-932b44b3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78680-nltk-arbitrary-code-execution-via-uncontrolled-graphviz-dot</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-in-smartpunct-and-attributes-252cde7d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-xss-via-form-feed-in-attributesextension-d61618f5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-via-parsing-algorithms-d1480161</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tornado-multipart-form-data-memory-amplification-dos-in-httputil-py-5d8eb9f2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tornado-cookie-attribute-injection-via-case-insensitive-kwargs-c42b886c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73228-django-rest-framework-data-upload-max-memory-size-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73229-django-rest-framework-adminrenderer-permission-bypass-information</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73086-nanoid-integer-overflow-in-csprng-pool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-environment-variable-exfiltration-via-proxy-settings-5cfe8952</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-pacquet-path-traversal-in-lockfile-dependency-symlinks-dc3f81d1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pnpm-pacquet-path-traversal-in-lockfile-install-2f692861</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mlflow-statsmodels-flavor-security-control-bypass-in-pickle-c4a0165d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73089-browserslist-unbounded-cache-memory-growth-via-distinct-query</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73088-browserslist-dos-crash-via-untrusted-stats-file-in-normalizestats</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-auth-plugin-downgrade-to-mysql-clear-password-leaks-credentials-620917f5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-auth-plugin-downgrade-to-mysql-clear-password-leaks-plaintext-4f504449</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62993-smarty-ssrf-via-redirect-bypass-in-fetch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69127-kirby-rest-api-information-disclosure-via-error-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mysql2-unbounded-zlib-inflate-decompression-bomb-6d425342</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71415-kirby-authorization-bypass-in-rest-api-file-uploads</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75594-kirby-path-traversal-in-media-handler-via-encoded-slashes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-tgrep-regular-expression-denial-of-service-02fca1b2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81888-hono-oauth-providers-oauth-state-validation-bypass-in-social</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81889-elfinder-ssrf-protection-bypass-via-dns-rebinding</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodemailer-raw-message-option-bypasses-disablefileaccess-fb6da12e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-82078-papercut-ng-mf-unsafe-reflection-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-81578-papercut-ng-mf-missing-authentication-for-critical-function</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55855-mariadb-connector-node-js-sql-injection-in-buffer-parameter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55860-mariadb-r2dbc-cleartext-password-disclosure-to-mitm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55859-mariadb-r2dbc-charset-confusion-leading-to-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55858-mariadb-java-client-charset-confusion-encoding-mismatch</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55857-mariadb-connector-j-cleartext-password-transmission-in-pam</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55856-mariadb-connector-j-cleartext-password-disclosure-in-mitm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55848-mapfish-print-xxe-in-gml-layer-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55785-free5gc-ausf-non-constant-time-authentication-comparison-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55784-free5gc-ausf-authentication-context-race-condition</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55779-silverstripe-versioned-xss-in-archive-admin-restore</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55867-graylog-token-revocation-endpoint-idor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55841-graylog-syslog-parser-field-injection-in-key-value-message</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55764-klever-go-sft-add-quantity-int64-overflow-bypasses-maxsupply</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55854-mariadb-connector-node-js-cleartext-password-transmission-in-pam</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55678-arc-enterprise-authentication-bypass-in-cluster-node-admission</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55763-klever-klever-go-percentage-transfer-royalty-zero-debit-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55891-privatebin-reflected-json-injection-in-jsonld-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55696-privatebin-stored-xss-in-attachment-download-link</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/aiir-verification-and-policy-gates-fail-open-ab3a8d0c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55484-alos-http-unauthenticated-dos-in-sanitizerequestpath</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55634-pimcore-dataobject-class-definition-field-name-remote-code</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55220-pimcore-hotspotimage-unrestricted-php-object-deserialization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55215-mariadb-connector-node-js-cleartext-password-disclosure-to-mitm</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55247-plone-plone-app-event-denial-of-service-in-icalendar-import</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55622-incus-project-restriction-bypass-in-instance-copy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55621-incus-authorization-bypass-in-custom-volume-copy</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55228-weblate-idor-in-groupviewset-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55227-weblate-observable-object-existence-disclosure-via-http-status</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55520-protego-redos-in-robots-txt-wildcard-matching</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55248-plone-plone-app-portlets-denial-of-service-via-rss-feed-portlet</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55673-powsybl-core-os-command-injection-in-localcommandexecutor</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55584-phpsysinfo-ip-allowlist-bypass-via-header-spoofing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55245-bifrost-ssrf-bypass-in-ispublicip-ip-classification</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55588-oras-cli-uncontrolled-recursion-in-referrer-graph-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55485-piccolo-admin-privilege-escalation-via-session-token-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55509-wsgidav-mysqlbrowserprovider-blind-sql-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55425-graylog-server-information-disclosure-in-system-catalog-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55566-yamcs-dom-xss-in-extension-routing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55565-yamcs-remote-code-execution-via-unescaped-streamsql-like-pattern</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55559-yamcs-remote-code-execution-via-yaml-injection-in-instance</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55552-yamcs-unauthenticated-directory-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55549-yamcs-reflected-xss-in-authorize-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55547-yamcs-missing-authorization-on-role-and-privilege-enumeration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55545-yamcs-websocket-subscription-handlers-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55521-yamcs-core-api-missing-authorization-in-multiple-endpoints</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55511-yamcs-authenticated-rce-via-streamsql-column-name-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55068-free5gc-nrf-input-validation-bypass-in-nf-profile-registration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55067-vikunja-kanban-bucket-cross-tenant-relocation-via-mass-assignment</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55065-vikunja-authorization-bypass-in-project-view-deletion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55064-vikunja-incomplete-privilege-escalation-fix-via-parent-project-id</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54766-vikunja-project-duplication-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54788-datadog-dd-trace-rs-unbounded-w3c-tracestate-parsing-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55834-pocket-id-open-redirect-in-oidc-authorize-page-with-prompt-none</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55569-aqua-archive-extraction-path-traversal-via-symlink</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54755-klever-integer-overflow-in-split-royalty-validation-enables</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54754-klever-marketplace-settlement-mints-klv-when-referral-and-royalty</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55108-kubevela-terraform-remote-loader-dos-via-unbounded-file-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gix-packetline-integer-underflow-in-side-band-packet-parsing-50c9592d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54746-hatchet-cross-tenant-authorization-bypass-in-dispatcher-grpc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55558-aiosmtplib-starttls-response-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54770-webob-open-redirect-via-leading-control-characters-in-location</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-downloader-hardlink-filesystem-containment-bypass-522cb97d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-uncontrolled-recursion-in-featstructreader-denial-of-service-e246abcc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-path-traversal-in-model-artifact-apis-via-pathsec-bypass-a4651c73</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-pl196xcorpusreader-quadratic-redos-on-malformed-tei-blocks-8473e6ef</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-quadratic-cpu-exhaustion-in-xmlcorpusview-read-xml-fragment-439bc4da</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-porterstemmer-quadratic-time-dos-via-long-runs-of-y-b1fab99a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/crossplane-package-manager-signature-bypass-via-toctou-in-tag-c3cd8716</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54732-libreoffice-convert-path-traversal-in-filename-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54718-silverstripe-advanced-workflow-rce-in-email-template</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54687-n8n-nodes-sqlite3-path-traversal-via-user-controlled-database</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54713-cakephp-queue-incomplete-comparison-in-getuniqueid</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54721-silverstripe-userforms-remote-code-execution-in-email-subject</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2023-49105-owncloud-improper-authentication-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-66384-jfrog-artifactory-path-traversal-in-docker-cache</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-redos-in-text-findall-via-unvalidated-regex-70befad1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-44701-openstamanager-html-injection-in-group-name</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/librenms-stored-xss-via-snmp-syslog-data-in-legacy-templates-a27e8a90</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54614-cakephp-debugkit-mailpreview-unsafe-reflection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54569-senaite-core-unauthenticated-rce-via-eval-injection-and-missing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54606-suneditor-embed-plugin-dom-xss-via-external-script-element</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/openwisp-ipam-missing-authorization-in-subnet-export-55f60554</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pantheon-agents-trojanized-pypi-packages-deliver-credential-stealer-56064d97</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54511-logtape-syslog-log-injection-via-unescaped-control-characters</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54550-izpack-path-traversal-in-unpackerbase</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54523-kyverno-namespacedmutatingpolicy-generator-apply-namespace</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54548-siemens-kas-ssh-host-key-checking-configuration-weakness</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54553-starlette-admin-unvalidated-order-by-parameter-information</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54556-http4s-http-2-denial-of-service-in-hpack-header-compression</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54356-budibase-s3-signed-upload-url-issuance-via-attachments-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65182-apache-tomcat-security-constraint-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65905-apache-tomcat-digest-authenticator-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68525-apache-tomcat-form-authentication-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2021-23758-ajax-net-professional-unsafe-deserialization-of-untrusted-data</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2015-3246-red-hat-libuser-race-condition-in-passwd-file-handling</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2015-5287-red-hat-abrt-privilege-escalation-via-symlink-attack</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2022-0995-linux-kernel-out-of-bounds-write-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2019-1068-microsoft-sql-server-remote-code-execution</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54338-jupyterhub-unauthenticated-denial-of-service-in-login-form</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55099-icalendar-algorithmic-complexity-in-equality-comparison</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-45019-chainlit-server-side-request-forgery-via-mcp-transports</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-45018-chainlit-command-injection-in-mcp-stdio-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55609-sublinear-time-solver-mcp-arbitrary-file-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nokogiri-unchecked-return-value-in-canonicalize-method-3863de91</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-jvm-argument-injection-in-stanford-wrappers-via-per-call-options-628f3938</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nokogiri-xslt-transform-memory-leak-0441ddf7</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nokogiri-css-selector-tokenizer-redos-d52ae203</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-corpus-reader-sandbox-bypass-6e33487f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-corpus-readers-symlink-path-traversal-bypass-edf52a38</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55620-eml-parser-denial-of-service-via-nested-parentheses-in-received</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55619-eml-parser-denial-of-service-via-deeply-nested-email-header</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55618-govcert-lu-eml-parser-url-extraction-bypass-via-html-entities</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55663-mediasoup-sctp-state-cookie-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55637-genieacs-mcp-dns-rebinding-in-streamable-http-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55419-pollen-robotics-reachy-mini-unrestricted-file-upload-in-media-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/phpmyfaq-privilege-escalation-in-groupcontroller-updatepermissions-3da5d4fe</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/phpmyfaq-public-api-information-disclosure-in-faq-endpoints-8f0c6c40</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/phpmyfaq-path-traversal-in-pdf-export-5f62d0df</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55557-browse-mcp-arbitrary-file-write-via-path-traversal</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55585-qwed-authenticated-remote-code-execution-in-parse-expr</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55553-urllib-cross-origin-redirect-credential-leakage</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55571-djust-authentication-bypass-in-liveview-websocket-mount</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55640-nextcloud-mcp-server-webhook-auth-bypass-in-vector-sync</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/pickem-terminal-escape-sequence-injection-via-unsanitized-item-text-d94d9a83</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/utcp-http-oauth2-tokenurl-trust-boundary-bypass-in-openapi-conversion-c10cfda8</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/utcp-http-http-tool-invocation-ssrf-via-unvalidated-redirects-681a2cb0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55580-mcp-shell-security-disabled-by-default-and-shell-interpreter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55581-sonirico-mcp-shell-allowlist-bypass-via-bash-c-flag</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55582-mcp-shell-secure-mode-allowlist-bypass-via-git-shell-alias</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55546-qwed-ai-qwed-mcp-unsafe-sympy-parse-expr-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55536-praisonai-browser-server-websocket-origin-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55532-praisonai-origin-validation-bypass-enabling-csrf</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55533-praisonai-recipe-server-authentication-bypass-with-missing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55539-praisonai-async-jobs-api-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55527-praisonaiagents-filememory-path-traversal-arbitrary-file-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55541-praisonai-authentication-bypass-in-serve-command</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55535-praisonai-server-side-request-forgery-in-webhook-url-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55537-praisonai-webhook-ssrf-via-dns-fail-open-and-toctou</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55538-praisonai-agent-invocation-auth-bypass-via-missing-api-key</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55540-praisonai-path-traversal-via-symlinks-and-unvalidated-working</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55530-praisonai-ast-grep-rewrite-missing-authorization-in-file</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55524-praisonai-agents-ssrf-in-web-crawl-tool-via-redirect-and-dns</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55534-praisonai-serve-agents-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55526-praisonai-ssrf-protection-bypass-in-spider-tools-via-dns</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55531-praisonai-mcp-http-server-memory-exhaustion-via-unbounded-session</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55528-praisonai-agentserver-authentication-bypass-on-all-routes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55529-praisonai-mcp-http-stream-origin-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55523-praisonai-web-crawl-ssrf-protection-bypass-via-unchecked</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55522-praisonai-workflow-include-remote-code-execution-in-tools-py</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55525-praisonai-web-crawl-ssrf-via-redirect-following</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-unsafe-pickle-deserialization-in-allowlisted-loaders-eeef7a48</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-untrusted-search-path-in-graphviz-dot-invocation-a4934721</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-entity-expansion-denial-of-service-via-elementtree-xml-parsing-e2038a9e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-pathsec-ssrf-protection-bypass-with-proxy-configured-e731f278</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-unsafe-pickle-deserialization-in-transitionparser-672e8ed3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-incomplete-denylist-argument-injection-in-repo-blame-0f5a1996</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-tagreference-create-arbitrary-file-read-via-positional-4b3f134a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-config-injection-via-unsafe-re-serialization-of-multi-line-a7bdddba</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-local-file-disclosure-via-gitmodules-include-directive-e93466b0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-path-traversal-in-clone-from-and-clone-via-separate-git-dir-76bb0c2e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/vibeio-http-dos-in-http-1-x-chunked-encoding-parser-d87e84a0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cloudreve-path-traversal-in-remote-download-28748249</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cloudreve-broken-access-control-in-file-share-caching-13df24a4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gorilla-websocket-weak-prng-for-mask-key-generation-0861bf09</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/netfoil-improper-output-neutralization-for-logs-in-doh-response-c6a8161c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54625-django-cms-page-cache-ignores-plugin-vary-headers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54623-django-cms-plugin-move-endpoint-denial-of-service-via-cyclic</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/tokio-postgres-out-of-bounds-read-on-mismatched-datarow-fields-51e13d2d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/postgres-protocol-panic-on-malformed-hstore-value-98d63cdf</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/postgres-protocol-unbounded-scram-iteration-count-dos-d8dcba22</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54050-sakai-profile-image-deletion-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54049-sakai-conversations-stored-cross-site-scripting-in-messages</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53710-ibm-mcp-contextforge-gateway-restrictedpython-sandbox-bypass-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-78329-apache-camel-undertow-header-filter-bypass-in-endpoint-routes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71300-apache-camel-atmosphere-websocket-header-injection-in-producer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63621-apache-camel-knative-header-injection-in-structured-content-mode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-66906-apache-camel-azure-storage-blob-path-traversal-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-66907-apache-camel-google-storage-relative-path-traversal-in-download</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59230-apache-camel-mail-header-injection-via-headersinline</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-60093-apache-camel-azure-storage-datalake-path-traversal-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-66908-apache-camel-platform-http-main-jwt-authentication-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-21962-oracle-http-server-and-oracle-weblogic-server-proxy-plug-in</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/justhtml-uncontrolled-recursion-dos-via-deeply-nested-html-26591bb6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-symlink-escape-in-corpusreader-allows-arbitrary-local-file-read-f12c334c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-ipipancorpusreader-symlink-based-arbitrary-file-read-50fafa81</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-filesystempathpointer-arbitrary-file-read-via-file-protocol-065a2b57</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-streambackedcorpusview-pathsec-bypass-arbitrary-file-read-dc56e3c3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-framenetcorpusreader-symlink-sandbox-bypass-9890e9b3</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-ssrf-fail-open-in-validate-network-url-via-dns-resolution-failure-e27dfd99</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71513-nltk-allowlistunpickler-dotted-name-validation-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-insecure-default-configuration-in-pathsec-f4930423</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71514-nltk-crubadancorpusreader-path-traversal-in-corpus-reader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-unbounded-recursion-in-jsontaggeddecoder-decode-obj-e977609c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-framenet-and-nkjp-readers-path-traversal-106fc925</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77415-jsonata-arbitrary-code-execution-via-crafted-expressions</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77414-jsonata-arbitrary-code-execution-in-expression-evaluation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68508-hydra-hydra-utils-instantiate-code-injection-with-untrusted</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63135-yourls-stored-xss-in-referrer-statistics-via-crafted-referer</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77413-jsonata-arbitrary-code-execution-in-lookup-function</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-77354-kin-openapi-uncontrolled-resource-consumption-in-deepobject-query</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61539-xinference-remote-code-execution-via-unsafe-eval-in-llama3-tool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59989-phalcon-volt-template-engine-code-injection-via-join-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76905-kin-openapi-openapi3filter-nil-pointer-panic-in-converterrors</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64679-atlantis-path-traversal-in-workspace-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63421-keystone-graphql-maxtake-bypass-with-negative-values</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61824-defuddle-cross-site-scripting-in-site-extractors</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-76904-geotools-sql-injection-in-jsonarraycontains-filter</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grav-cms-cross-site-scripting-via-twig-sandbox-asset-injection-d5a761cc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63466-unleash-global-mustache-escape-override-disables-html-escaping-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63004-unleash-addon-webhook-url-server-side-request-forgery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63462-unleash-server-unauthenticated-denial-of-service-via-deeply</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72818-nltk-tweettokenizer-denial-of-service-via-regex-catastrophic</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73570-zimbra-collaboration-suite-os-command-injection-in-smtp</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67448-axllent-mailpit-websocket-origin-check-bypass-via-percent-encoded</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67447-mailpit-smtp-data-reader-unbounded-line-buffering-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55451-gettext-converter-prototype-pollution-in-js2i18next</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/wagtail-improper-permission-restriction-on-page-translation-api-871f4804</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/wagtail-improper-permission-handling-when-copying-snippets-7cffb199</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/wagtail-improper-restriction-handling-in-documents-and-images-api-0df25de5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/wagtail-document-sha1-hash-enumeration-via-http-headers-c56639c4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/winter-cms-reflected-xss-in-backend-table-widget-search-parameter-37a9f453</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/winter-cms-csrf-through-backend-page-action-routing-63f3a65d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/winter-backend-module-stored-xss-in-cached-styles-3dde5f4d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/winter-cms-importexportcontroller-ajax-handlers-permission-bypass-ac8bbb08</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/winter-backend-user-profile-information-disclosure-via-myaccount-d7c5a5b1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/winter-backend-list-widget-stored-xss-in-image-columns-e56efd1b</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/fleet-order-by-column-injection-in-activity-endpoints-40f0d0f7</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/fleet-missing-authorization-in-ios-app-endpoints-32472906</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/winter-cms-authenticated-twig-sandbox-escape-in-securitypolicy-28592f33</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/winter-cms-local-file-inclusion-in-javascript-asset-compilation-04487cca</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63202-netty-incubator-ohttp-binaryhttpparser-infinite-loop-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63179-winter-cms-local-file-inclusion-via-less-import-directives</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61827-netty-incubator-ohttp-unbounded-variable-length-field-buffering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63124-netty-netty-incubator-codec-bhttp-infinite-loop-in-field-section</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61799-netty-binary-http-parser-integer-overflow-in-varint-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61798-netty-netty-incubator-codec-ohttp-hpke-private-key-exposure-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61663-django-cms-authorization-bypass-in-render-object-structure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63003-django-cms-page-duplicate-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-75526-django-cms-stored-xss-in-edit-mode-plugin-exception-rendering</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-57570-laravel-backpack-crud-authorization-bypass-in-hasmany-morphmany</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55468-wagtail-pages-admin-api-improper-access-control</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nocobase-arbitrary-file-write-and-local-file-inclusion-leading-to-c46c0c58</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54624-django-cms-structure-endpoint-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54622-django-cms-clipboard-copy-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54256-winter-cms-fileupload-widget-idor-in-attachment-metadata</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54251-netty-netty-incubator-codec-ohttp-memory-leak-in-aead-decryption</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54245-fleet-sql-injection-in-okta-conditional-access-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54182-laravel-backpack-crud-os-command-injection-in-stats</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54181-laravel-backpack-crud-stored-xss-in-color-column</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54180-laravel-backpack-crud-authorization-bypass-in-write-operations</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54179-laravel-backpack-crud-arbitrary-file-upload-via-base64-image</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54178-laravel-backpack-crud-arbitrary-file-deletion-in-hasuploadfields</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54177-laravel-backpack-crud-file-upload-remote-code-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54176-laravel-backpack-crud-authentication-bypass-in-account-email</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54175-laravel-backpack-crud-unverified-password-change-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54168-tekton-pipelines-as-code-unscoped-github-app-token-unauthorized</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54167-openshift-pipelines-as-code-github-app-token-credential</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/opentofu-denial-of-service-via-untrusted-server-connections-9195aa10</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54162-ember-terminal-escape-sequence-injection-from-caddy-logs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54156-node-opcua-unbounded-nonce-cache-heap-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54155-node-opcua-missing-nonce-verification-in-usernameidentitytoken</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54150-mux-next-video-unauthenticated-arbitrary-file-read-in-api-video</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/coder-stored-html-injection-in-appearance-settings-6383f259</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/coder-user-enumeration-in-login-endpoint-via-timing-based-placeholder-35423c9f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/kittycad-kcl-lib-use-after-free-in-environment-access-bb46f4bb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/zoo-design-studio-kcl-parser-stack-overflow-via-recursive-expression-52ec9542</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/stigmem-node-blind-ssrf-in-webhook-subscription-delivery-5725952b</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55253-langchain-mongodb-nosql-injection-in-list-search-methods</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55244-asteval-interpreter-sandbox-escape-via-baseexception-subclasses</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/asteval-sandbox-escape-via-numpy-ctypes-arbitrary-memory-read-write-a89cc527</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55149-vouch-proxy-unbounded-multipart-cookie-allocation-dos</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-45404-opentelemetry-go-unsynchronized-baggage-map-race-condition</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32637-velero-path-traversal-in-tarball-extraction-during-restore</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72530-trueconf-server-code-injection-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72529-trueconf-server-missing-authentication-for-critical-function</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63123-tinacms-cli-cross-origin-csrf-in-media-upload</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59992-tinacms-next-tinacms-s3-broken-access-control-in-media-handler</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63188-logto-logto-tunnel-path-traversal-in-static-file-serving</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61712-moby-buildkit-denial-of-service-via-unbounded-group-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61711-moby-buildkit-custom-frontend-security-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/mcp-searxng-credential-exposure-in-mcp-logs-and-json-rpc-errors-07f55aad</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62673-grav-htaccess-file-extension-rules-bypass-via-case-variation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61807-snipe-it-stored-dom-xss-via-table-selected-count-ids</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55703-snipe-it-maintenance-record-disclosure-via-missing-authorization</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55694-snipe-it-authorization-bypass-in-eula-file-access</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55643-snipe-it-tenant-isolation-bypass-in-authorization-checks</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2024-45747-geoserver-server-side-template-injection-in-freemarker-templates</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54689-searxng-mcp-server-hardened-mode-ssrf-bypass-via-redirect-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54688-searxng-mcp-server-ssrf-in-web-url-read</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/geolens-authorization-and-cache-scope-disclosure-flaws-bc4770e0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53966-xwiki-platform-live-data-privilege-escalation-through-edit-api</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53965-mcp-php-sdk-unbounded-sse-buffer-memory-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53964-adfinis-document-merge-service-rce-via-ssti-in-xlsx-templates</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53957-contentful-mcp-server-export-space-import-space-credential</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53941-inspektor-gadget-ldcache-parser-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/block-buffer-panic-corrupts-buffer-cursor-position-4abf624c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/claude-faf-mcp-path-traversal-in-file-read-write-tools-85bafa30</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/faf-mcp-path-traversal-in-file-read-write-tools-756b9190</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/grok-faf-mcp-path-traversal-arbitrary-file-read-79c0a472</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55236-langchain-langgraph-api-authorization-bypass-in-run-creation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55235-langchain-langgraph-api-authentication-bypass-in-webhook-routing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73974-linuxfabrik-monitoring-plugins-arbitrary-root-file-read-via-test</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-17106-moby-go-archive-path-traversal-in-tar-extraction</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/librenms-stored-xss-in-device-showconfig-via-oxidized-api-e20d3cc8</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/librenms-stored-xss-in-graph-description-settings-ffdfb5dd</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/librenms-remote-code-execution-via-aboutcontroller-d7e2e3b0</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71417-netflix-lemur-arbitrary-certificate-revocation-via-duplicate</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71322-netflix-lemur-missing-authorization-check-on-post-certificates-id</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71317-netflix-lemur-sub-ca-creation-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71308-netflix-lemur-unchecked-replaces-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71307-netflix-lemur-destinations-api-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71303-lemur-acme-authority-update-endpoint-ssrf-via-url-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70667-netflix-lemur-ssrf-in-certificate-revocation-checking-via</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70666-lemur-server-side-request-forgery-via-acme-authority-update</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65959-vitess-vttablet-missing-authorization-in-debug-vrlog-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62988-froxlor-api-credential-and-2fa-secret-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55593-froxlor-csrf-vulnerability-in-ajax-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54543-froxlor-domainzones-add-dns-zone-file-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54348-froxlor-second-order-sql-injection-in-ipsandports-listing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54347-froxlor-stored-xss-in-dns-editor-via-txt-records</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54723-devpi-server-database-leak-in-changelog-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55224-mineadmin-path-traversal-via-unsanitized-identifier-in-plugin</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/monai-numpyreader-unsafe-deserialization-in-image-loading-44691ae5</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/monai-os-command-injection-in-nnunetv2runner-d81ab123</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/monai-algo-from-pickle-rce-via-pickle-deserialization-6f8e0260</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/triton-vm-missing-constraint-in-sponge-absorb-mem-instruction-1db6e865</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55211-surfio-out-of-bounds-read-in-irap-file-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55209-equinor-resdata-input-validation-flaws-in-grdecl-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55107-kobako-sandbox-escape-via-public-send-reflection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/meshcentral-stored-xss-via-unsanitized-agent-fields-1e9bee49</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18963-siemens-industrial-edge-management-authentication-bypass-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68922-mobsf-path-traversal-in-icon-analysis</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68923-mobsf-csrf-protection-bypass-after-django-migration</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68927-mobsf-ssrf-port-restriction-bypass-in-assetlinks-check</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68924-mobsf-zip-apk-extraction-denial-of-service-via-per-file-size</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63640-magicmirror-socket-payload-secret-placeholder-expansion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55178-geolens-cross-dataset-authorization-bypass-in-map-relationship</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55182-librenms-remote-code-execution-in-signal-alert-transport</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63643-magicmirror-server-side-request-forgery-in-calendar-module</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63642-magicmirror-newsfeed-server-side-request-forgery-in-check-article</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63641-magicmirror-socket-io-auth-bypass-allows-unauthenticated-module</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-61634-rabbitmq-java-client-protocol-violation-on-oversized-frames</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63336-rabbitmq-java-client-insecure-default-tls-certificate-validation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63335-rabbitmq-java-client-denial-of-service-via-malformed-amqp-frame</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63337-rabbitmq-java-client-unsafe-reflection-in-json-rpc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69219-rabbitmq-java-client-memory-allocation-dos-in-valuereader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69220-rabbitmq-java-client-unbounded-recursion-in-valuereader</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-63328-aqua-trivy-plugin-manager-path-traversal-arbitrary-file-write</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55839-kestra-stored-xss-via-custom-markdown-link-attribute-injection</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rhinostone-swig-path-traversal-in-include-extends-tags-19cf4928</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rhinostone-swig-path-traversal-in-include-extends-3d83b9b9</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70657-copyparty-file-dirkey-confusion-authorization-bypass</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-65400-apple-macos-screen-sharing-authentication-bypass</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69148-mlflow-createmodelversion-authorization-bypass-via-source</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69146-mlflow-loginputs-endpoint-authorization-bypass-in-basic-auth</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64849-mlflow-server-side-request-forgery</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56677-9router-unauthenticated-server-side-request-forgery-in-oidc-test</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54147-http4k-http4k-security-digest-weak-cryptographic-algorithm-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/go-pkcs12-authentication-bypass-in-decode-functions-db1e1a0f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53752-docx4j-stack-overflow-via-cyclic-style-chain</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53659-http4k-unbounded-gzip-decompression-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/atomic-agents-stack-cost-guardrail-bypass-for-unknown-models-8c83e621</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/atomic-agents-stack-http-mcp-catalog-code-execution-via-mitm-25e6df1d</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59903-netty-corshandler-cache-poisoning-via-vary-header-overwrite</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59902-netty-sctpmessagecompletionhandler-memory-exhaustion</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/uniget-cli-metadata-signature-verification-logic-inversion-d671aea8</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59893-sqlparse-inefficient-regex-handling-in-dollar-quoted-literals</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54284-sqlparse-tokenlist-cpu-denial-of-service</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55090-etherpad-stored-xss-in-html-export-via-unescaped-attribute-pool</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/etherpad-cryptographic-hardening-in-token-generation-authentication-and-b07b6d55</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55062-uniget-cli-path-traversal-in-hook-file-handling</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55061-uniget-cli-command-injection-in-editor-variable-parsing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/vm2-memory-exhaustion-dos-via-bufferalloclimit-bypass-8ef44423</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/vm2-nodevm-builtin-wildcard-host-process-hijack-c3709137</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47698-vm2-sandbox-escape-via-proto-mutators</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47686-vm2-sandbox-escape-via-unsanitized-error-cause</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47683-vm2-bufferalloclimit-bypass-in-buffer-concat-and-buffer-from</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71491-sqlparse-quadratic-dos-in-group-comments</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68520-glances-as-dict-secure-credential-leak-in-api-config-endpoint</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68519-glances-incomplete-fix-in-alert-action-command-execution</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62982-glances-incomplete-command-injection-sanitizer-fix-in-nested-stat</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-59894-sqlparse-code-injection-in-python-and-php-output-modes</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68517-glances-rest-api-cors-credentials-bypass-via-wildcard-in-multi</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-45099-gruntwork-terragrunt-arbitrary-file-deletion-in-module-manifest</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68518-glances-command-injection-via-cross-field-shell-operator</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64865-quantumnous-new-api-redis-quota-cache-race-condition-in-user</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71479-quantumnous-new-api-integer-overflow-in-quota-billing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64866-quantumnous-new-api-admin-passkey-reset-privilege-escalation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64868-quantumnous-new-api-unauthenticated-payment-webhook-denial-of</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64859-new-api-user-list-api-information-disclosure-and-privilege</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55158-conflibot-command-injection-in-pull-request-branch-names</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-40345-deepmergets-stack-exhaustion-in-recursive-object-merging</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2025-62593-ray-project-ray-code-injection-vulnerability</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55156-token-optimizer-mcp-path-traversal-in-session-log-api</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55157-token-optimizer-mcp-os-command-injection-in-smart-user</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53708-ibm-contextforge-dns-toctou-race-condition-in-ssrf-validation</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53660-openam-insecure-sso-cookie-initialization</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-53658-hyperledger-fabric-ca-ldap-injection-in-getuser-filter</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35219-budibase-automation-ssrf-in-webhook-and-integration-steps</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35511-authorizer-oauth-account-takeover-via-unverified-email-linking</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-publish-boundary-bypass-via-websocket-broadcast-4a693e31</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-authorization-in-refreshbacklink-endpoint-68fc86a1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-sql-injection-in-backlink-mention-search-9ca0d701</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73654-trigger-dev-prototype-pollution-in-run-metadata-operations</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73559-vllm-completion-prompt-lists-dos</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/atomic-agents-stack-dashboard-path-traversal-in-http-server-0ec5bd4c</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55102-hashi-vault-js-sensitive-information-exposure-in-error-handling</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55088-etherpad-replayable-token-transfer-endpoint-with-cleartext-token</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55086-etherpad-predictable-temp-file-paths-enable-symlink-based-file</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55087-etherpad-lite-cache-poisoning-xss-and-open-redirect-via-x-proxy</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55072-pimcore-classdefinition-uid-regex-sql-injection-in-block-php</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55074-chofstede-ansible-jailexec-jail-escape-via-symlink-following</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-sql-injection-via-queryblocks-template-5d17f8c4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-authentication-bypass-in-graph-endpoints-1a2fdb29</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-authentication-bypass-in-attribute-view-publish-filter-a636ae7c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-authentication-bypass-via-localhost-trusted-endpoints-821acf4c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-publish-access-check-in-getfileannotation-endpoint-37164f5a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-publish-access-check-on-block-endpoints-a1bdbbd9</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-publish-access-filter-in-getblockattrs-endpoints-8183f8a6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-information-disclosure-via-resolveassetpath-endpoint-aed0ff9e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-authorization-checks-in-api-endpoints-c00e5270</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-encrypted-notebook-key-derivation-material-disclosure-b303f53e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-session-cookie-signing-key-disclosure-via-api-system-getconf-722c1d76</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-publish-access-filter-on-path-resolution-endpoints-c0e57483</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-renderattributeview-information-disclosure-in-related-databases-ea7db70e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-getencryptednotebookstatus-information-disclosure-e7e544a2</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-authorization-in-embed-block-endpoints-36987a56</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-access-control-bypass-in-static-file-routes-5375e27c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-information-disclosure-in-api-system-getconf-endpoint-a07f606e</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-tag-api-information-disclosure-in-password-protected-documents-ede0fd33</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-information-disclosure-in-getnotebookinfo-66fed60c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-publish-access-gate-missing-authorization-for-encrypted-615ebc61</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/sipsorcery-turnserver-denial-of-service-via-malformed-udp-datagram-96530cb3</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/sipsorcery-out-of-bounds-read-in-sctp-sack-chunk-parsing-365efd66</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-55071-stata-mcp-command-injection-in-ado-package-install</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-52776-compliance-trestle-ssrf-allowlist-bypass-in-urlsecurityvalidator</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-48798-ssh-net-scpclient-path-traversal-in-recursive-download</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-48786-fleet-information-disclosure-in-target-search-endpoint</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-47132-phpmyfaq-sql-like-wildcard-injection-in-chat-user-search</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-46369-nimiq-nimiq-blockchain-off-by-one-error-in-validity-store</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-45694-librenms-reflected-xss-in-proxmox-application-component</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-35445-winter-cms-authorization-bypass-in-users-controller</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32639-winter-cms-broken-access-control-in-cms-controllers-index</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32593-winter-cms-sql-injection-in-backend-filter-widget-numberrange</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32258-winter-cms-stored-xss-in-editor-settings-custom-styles</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-32257-winter-cms-stored-xss-in-brand-settings-custom-styles</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-9318-jazzband-tablib-stored-xss-in-html-export-dataset-title</loc><lastmod>2026-08-12</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62902-microsoft-net-wpf-information-disclosure-in-document-parsing</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62871-microsoft-net-wpf-heap-overflow-and-elevation-of-privilege</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62897-microsoft-net-integer-overflow-in-windows-presentation-foundation</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70354-microsoft-net-out-of-bounds-write-in-windows-presentation</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62909-microsoft-net-privilege-escalation-in-diagnostics-ipc</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62886-microsoft-net-wpf-elevation-of-privilege-via-integer-overflow</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62901-microsoft-net-denial-of-service-in-system-net-websockets</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62899-microsoft-net-security-feature-bypass-in-system-net-httplistener</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/microsoft-quic-use-after-free-remote-code-execution-bc730249</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62898-microsoft-net-use-after-free-in-microsoft-quic</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73080-seaweedfs-unauthenticated-ssrf-in-volumeserver</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-authenticated-environment-variable-leak-in-twig-templating-b4794483</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-authorization-bypass-in-category-structure-modification-1555f980</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-path-traversal-in-ensurepathiscontained-4adc3058</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-authenticated-rce-through-twig-sandbox-escape-32ee5ec1</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-authenticated-rce-via-condition-config-json-cleanse-bypass-09aae32c</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-arbitrary-file-read-via-splfileobject-in-template-contexts-ea56dfbf</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nuxt-dev-server-information-disclosure-via-chrome-devtools-endpoint-1e6095d9</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nuxt-dev-server-information-disclosure-via-chrome-devtools-endpoint-081e48af</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/typo3-cms-broken-access-control-in-backend-and-install-tool-aa5ab01f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-58230-sap-approuter-token-validation-information-disclosure</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-20349-cisco-secure-firewall-asa-and-ftd-denial-of-service-in-ssl-vpn</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68820-microsoft-windows-ancillary-function-driver-for-winsock-use-after</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-72898-metabase-sql-injection-in-password-reset-endpoint</loc><lastmod>2026-08-11</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69112-hugging-face-accelerate-path-traversal-and-denial-of-service-in</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-28672-apache-ranger-command-injection-vulnerability</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-12570-keras-model-loading-denial-of-service-via-hdf5-shape-bombs</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71870-pypdf-uncontrolled-resource-consumption-in-tounicode-streams</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71852-pypdf-excessive-iteration-in-cid-font-width-parsing</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71851-brix-crypto-js-insufficient-entropy-in-wordarray-random</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71850-hono-hono-jsx-cross-user-data-disclosure-in-memo-function</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71849-hono-proxy-helper-information-disclosure-via-hop-by-hop-headers</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71848-hono-languagedetector-algorithmic-complexity-dos</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71847-ruby-json-heap-use-after-free-in-resumableparser</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67422-facelessuser-pymdown-extensions-redos-in-multiple-inline</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-56818-netty-redisarrayaggregator-memory-leak-in-resp-decoding</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-66062-svelte-sveltekit-redos-in-accept-header-content-negotiation</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nuxt-dev-server-information-disclosure-in-chrome-devtools-endpoint-84ecf405</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71557-go-git-path-traversal-via-malicious-reference-names</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71556-go-git-symlink-traversal-in-worktree-operations</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-command-execution-via-short-option-smuggling-bypass-37730e44</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-rce-via-git-config-option-name-injection-a2291ba6</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-path-traversal-via-unvalidated-submodule-name-287f9026</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-arbitrary-file-read-in-indexfile-remove-and-head-checkout-fe58ac21</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-command-injection-in-repo-init-via-template-option-d6ee64e1</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-argument-injection-in-indexfile-enables-arbitrary-file-b2cd09f2</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cure53-dompurify-xss-via-in-place-hook-removal-a96c9d92</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62996-smarty-security-stream-restriction-bypass-in-streamplugin</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-62992-smarty-symlink-path-traversal-in-security-policy</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-authentication-bypass-via-webauthn-replay-in-passkey-login-5577ef1c</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-arbitrary-file-read-via-splfileobject-in-twig-templates-1e0ddcaf</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71554-python-hyper-h2-request-smuggling-via-duplicate-host-headers</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-environment-variable-leak-via-twig-sandbox-bypass-54f53d6c</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-authorization-bypass-in-category-structure-management-d28fa120</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-missing-authorization-check-in-chartscontroller-3b1c02d9</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-path-traversal-in-local-file-system-class-15e6d094</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-stored-xss-via-unescaped-draft-name-in-control-panel-11756086</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67434-php-codesniffer-command-injection-in-blame-reports-via-crafted</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71498-uhop-node-re2-out-of-bounds-heap-read-in-replace-and-split</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71430-node-re2-process-abort-via-large-string-replacement</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/ngx-extended-pdf-viewer-arbitrary-code-execution-via-bundled-pdf-js-40df0fef</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-16633-mozilla-pdf-js-arbitrary-javascript-execution-via-malicious-pdf</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71497-jsoup-xss-in-cleaner-with-custom-safelist-raw-text-elements</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-improper-authorization-in-user-password-reset-9461dd38</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-twig-sandbox-escape-leading-to-authenticated-rce-f8c70cd6</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/craft-cms-authenticated-rce-via-condition-config-json-cleanse-bypass-08cfc3c0</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/thephpleague-commonmark-denial-of-service-in-xmlrenderer-99533992</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/thephpleague-commonmark-denial-of-service-in-uniqueslugnormalizer-94ab233b</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-in-footnote-extension-90371ead</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/league-commonmark-denial-of-service-in-attributesextension-c631ba68</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71488-league-commonmark-quadratic-time-denial-of-service-in-markdown</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71478-thephpleague-commonmark-xss-bypass-in-attributesextension</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nodeca-js-yaml-quadratic-cpu-consumption-in-omap-resolution-9112c357</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54717-silverstripe-cms-cross-site-scripting-in-breadcrumbs-page-list</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18654-aws-aws-cli-disabled-ssh-host-key-verification-in-emr-helper</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71476-nrwl-nx-path-traversal-in-self-hosted-remote-cache</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71439-mermaid-radar-diagrams-denial-of-service-via-unchecked-ticks</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71438-mermaid-prototype-pollution-in-configuration-apis</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-50159-mermaid-css-injection-via-sibling-combinators</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71437-mermaid-prototype-pollution-in-architecture-beta-diagrams</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71436-mermaid-infinite-loop-in-xy-charts-axis-processing</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71435-statamic-cms-stored-xss-in-form-notification-email-template</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71434-statamic-cms-unrestricted-file-upload-in-frontend-forms</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64662-statamic-cms-missing-authorization-in-navigation-endpoint</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64663-statamic-cms-unsafe-reflection-in-antlers-template-resolution</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64665-statamic-cms-account-takeover-via-oauth-email-matching</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-64664-statamic-cms-missing-authorization-in-control-panel-user-wizard</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71433-langgraph-incorrect-authorization-in-postgres-and-sqlite</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-67309-traefik-auth-bypass-via-path-traversal-in-kubernetes-ingress</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71325-traefik-namespace-isolation-bypass-in-kubernetes-crd</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71327-traefik-proxy-cross-namespace-route-hijacking-via-identity</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71326-traefik-basicauth-identity-spoofing-via-singleflight-key</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71324-traefik-response-poisoning-via-proxied-connect-in-shared</loc><lastmod>2026-08-06</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71321-nuxt-cpu-exhaustion-in-island-renderer-endpoint</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71320-nuxt-rce-via-runtime-template-injection-in-server-island-props</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71319-nuxt-devtools-command-injection-via-unauthenticated-rpc-channel</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71318-nuxt-unauthorized-component-instantiation-in-server-islands</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71316-nuxt-sensitive-information-disclosure-in-runtime-payload-cache</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71315-nuxt-authorization-bypass-via-mixed-case-route-rules</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71314-nuxt-denial-of-service-via-unbounded-v-for-expansion-in-island</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71313-rclone-path-traversal-in-local-backend-via-custom-filename</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rclone-s3-backend-cleartext-credential-disclosure-via-scheme-downgrade-ce52b5df</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71312-rclone-command-injection-via-powershell-smart-quotes-in-sftp</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rclone-webdav-credential-leakage-in-https-to-http-redirect-c81178f5</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71311-rclone-crlf-injection-in-ftp-backend-via-custom-filename-encoding</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rclone-s3-credential-disclosure-in-redirect-sanitization-4aebb4be</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rclone-path-traversal-in-serve-s3-b8a13312</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rclone-null-pointer-dereference-in-webdav-tus-upload-796eb40c</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71310-rclone-memory-exhaustion-via-unbounded-http-connect-response</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71309-rclone-path-traversal-in-serve-restic-command</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rclone-privilege-escalation-via-insecure-metadata-application-in-local-a1d9574b</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/rclone-verbose-stack-trace-disclosure-in-rc-api-0577cd74</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70612-electron-sandbox-bypass-via-external-protocol-handlers-in-iframes</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70611-electron-command-injection-in-devtools-reveal-in-file-manager</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70610-electron-prototype-pollution-in-contextbridge-object-copying</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70609-electron-javascript-injection-in-devtools-via-unsanitized-dock</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70608-electron-sandbox-bypass-via-openurl-navigation-path</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70607-electron-improper-input-validation-in-window-open-features-string</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70606-electron-cache-isolation-bypass-in-protocolresponse</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70605-electron-ssrf-and-local-file-disclosure-via-http-redirect</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70604-electron-cross-origin-read-in-custom-protocol-handlers</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70602-electron-session-isolation-bypass-in-extension-tab-and-scripting</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70603-electron-shell-openpath-path-validation-bypass-via-embedded-null</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70601-electron-context-isolation-bypass-via-function-prototype-bind</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70600-electron-ui-layer-restriction-bypass-in-native-autofill-popup</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70599-electron-origin-validation-error-in-permission-check-handler</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71293-statamic-cms-two-factor-recovery-code-exposure-in-antlers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70598-electron-out-of-bounds-read-in-off-screen-rendering</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70597-electron-code-signing-bypass-in-macos-parent-process-validation</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70596-ghost-stored-xss-in-feature-image-captions</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70595-ghost-ssrf-in-webmentions-functionality</loc><lastmod>2026-08-05</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-71211-mlflow-ai-gateway-ssrf-via-unvalidated-api-base</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70594-tryghost-ghost-session-fixation-in-ghost-admin</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70593-ghost-path-traversal-in-custom-theme-upload</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70592-ghost-path-traversal-in-database-backup-functionality</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70591-ghost-ssrf-in-ghost-admin-image-fetching</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70590-tryghost-ghost-password-hash-disclosure-in-admin-api</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70589-ghost-improper-validation-of-archived-subscription-offers</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70588-ghost-xss-in-universal-import-feature</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70494-open-webui-incorrect-authorization-in-shared-folder-deletion</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70493-open-webui-redos-in-knowledge-search-tools</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70492-open-webui-stored-xss-in-katex-render-error-fallback</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70491-open-webui-tool-source-code-disclosure-to-read-only-users</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70490-open-webui-authorization-bypass-in-terminal-websocket-route</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70489-open-webui-resource-consumption-via-automation-recurrence-rules</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-54020-open-webui-dns-rebinding-ssrf-bypass-in-multiple-components</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70487-open-webui-missing-authorization-in-inline-model-knowledge</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70488-open-webui-incorrect-authorization-in-sync-cleanup-endpoint</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70486-open-webui-same-origin-xss-in-terminal-file-preview</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70485-open-webui-ssrf-via-nat64-encoded-urls-in-web-retrieval</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70484-open-webui-authorization-bypass-in-image-generation-via-chat</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70480-open-webui-client-side-ssrf-in-vega-chart-rendering</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70483-open-webui-missing-authorization-in-chat-delete-endpoint</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70482-open-webui-account-takeover-via-oauth-token-exchange</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70481-open-webui-improper-authorization-in-standard-channel-message</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70479-open-webui-ssrf-in-playwright-web-loader-safeplaywrighturlloader</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70478-flowise-unauthenticated-oauth2-token-refresh-in-credential</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70477-flowise-rce-via-csv-agent-prompt-injection</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70476-flowise-broken-access-control-in-stripe-subscription-endpoints</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/flowise-missing-authorization-in-text-to-speech-endpoint-09292a2d</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70475-flowise-missing-authorization-in-execution-update-endpoint</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70474-flowise-oauth2-credential-isolation-bypass-and-authentication</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/flowise-incomplete-credential-redaction-in-credentials-api-b2a12084</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70473-flowise-information-disclosure-in-upsert-history-api</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70472-flowise-idor-in-openai-assistants-vector-store</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69264-flowise-flowise-rce-via-python-injection-in-csvagent</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/flowise-arbitrary-file-write-via-path-traversal-in-s3-document-loaders-a834fe1c</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70471-flowise-rbac-bypass-in-workspace-variables-injection</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-70470-flowise-pyodide-validator-unicode-homoglyph-bypass-in-csv-and</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69263-flowise-rce-via-mcp-environment-variable-blocklist-bypass</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69262-flowise-incorrect-authorization-in-chatflow-deletion-api</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69259-flowise-remote-code-execution-in-sqlite-record-manager-node</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69258-flowise-property-injection-in-prediction-api</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69257-flowise-ssrf-protection-bypass-via-ipv4-mapped-ipv6-addresses</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69256-flowise-csvagent-remote-code-execution-via-pandas-read-pickle</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69255-flowise-csv-agent-remote-code-execution-via-pyodide-code</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/fasterxml-jackson-core-number-length-constraint-bypass-in-async-parser-78aa3f75</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69254-flowise-nodevm-sandbox-escape-in-executejavascriptcode</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69252-flowise-missing-authorization-in-files-api-endpoint</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69251-flowise-rce-via-typeorm-datasource-configuration</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69250-flowise-ssrf-and-secret-exfiltration-in-oauth2-refresh-endpoint</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-73488-flowise-idor-in-payment-source-endpoint</loc><lastmod>2026-09-24</lastmod></url>
  <url><loc>https://junglewise.ai/threats/flowise-idor-in-customer-default-source-endpoint-e345be38</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18556-n-able-n-central-authentication-bypass-via-alternate-path</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69248-pyca-cryptography-improper-certificate-validation-in-name</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69249-pyca-cryptography-exponential-path-building-in-x-509-verification</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69247-pyca-cryptography-bleichenbacher-oracle-in-pkcs-7-decryption</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69246-guzzle-noncanonical-host-bypass-in-uri-handlers</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69245-guzzle-incorrect-cookie-domain-matching-for-noncanonical-ip</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69244-aiohttp-out-of-bounds-heap-read-in-c-http-response-parser</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69243-aiohttp-request-smuggling-in-websocket-upgrade</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69240-sequelize-sql-injection-in-oracle-dialect-escape-function</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69207-hono-redos-in-cors-middleware-via-access-control-request-headers</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-argument-injection-in-commit-count-method-0c4ff270</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-arbitrary-file-read-in-repo-archive-via-incomplete-denylist-851641e4</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/gitpython-arbitrary-file-read-and-overwrite-in-indexfile-and-89737d7c</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69192-beaugunderson-ip-address-ssrf-via-improper-leading-zero-octal</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69198-beaugunderson-ip-address-ssrf-bypass-via-cidr-suffix-masking</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69185-socket-io-socket-io-parser-memory-exhaustion-via-binary</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69153-postcss-path-traversal-in-sourcemappingurl-parsing</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69152-juliangruber-brace-expansion-denial-of-service-via-unbounded</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69151-angular-i18n-cross-site-scripting-via-event-handler-attributes</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-69149-angular-ssr-xss-in-fallback-raw-content-elements</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68945-angular-httptransfercache-cache-key-ambiguity-in-ssr</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-68930-eugeny-russh-channel-scoped-callback-bypass-for-unopened-channels</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-searchembedblock-sql-injection-1301810a</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-path-traversal-in-attribute-view-read-endpoints-b8bb1fdc</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-sql-injection-in-fulltextsearchassetcontent-endpoint-77bd29ce</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-authorization-in-getbacklinkdoc-getbackmentiondoc-568c02d6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-authorization-bypass-in-getbacklinkdoc-getbackmentiondoc-fa102472</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-metadata-disclosure-in-getblockinfo-endpoint-e5095957</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-missing-authorization-in-heading-transaction-endpoints-1bb25867</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/siyuan-authentication-bypass-in-publish-mode-content-endpoints-f588ab5f</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/nltk-missing-post-download-integrity-verification-in-downloader-6100a8bb</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-18577-n-able-n-central-authentication-bypass-and-account-takeover</loc><lastmod>2026-08-03</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-9856-hugging-face-transformers-path-traversal-in-save-pretrained</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/better-auth-external-request-basepath-modification-dos-644481c4</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/better-auth-basepath-modification-denial-of-service-f80487f6</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/cve-2026-9335-keras-hdf5-arbitrary-file-disclosure-via-externallinks</loc><lastmod>2026-08-07</lastmod></url>
  <url><loc>https://junglewise.ai/threats/guzzle-guzzlehttp-host-only-cookie-scope-disclosure-958db8d5</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/guzzle-information-disclosure-in-redirectmiddleware-referer-headers-d2e711b6</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/guzzle-unbounded-response-cookies-denial-of-service-in-cookiejar-f650c2bc</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/guzzle-proxy-authorization-header-disclosure-to-origin-servers-7a8a6575</loc><lastmod>2026-08-04</lastmod></url>
  <url><loc>https://junglewise.ai/threats/axios-form-serializer-maxdepth-bypass-via-metatoken-e443b5bd</loc><lastmod>2026-09-25</lastmod></url>
  <url><loc>https://junglewise.ai/threats/axios-nested-option-objects-prototype-pollution-gadget-b2852cf7</loc><lastmod>2026-09-25</lastmod></url>
</urlset>
