<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://blog.securelayer7.net/exploit-validated-pentesting/</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T19:24:52.000Z</news:publication_date>
      <news:title>Exploit-Validated Pentesting: Stop Paying for CVE Lists</news:title>
      <news:keywords>Security News</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/claude-faf-mcp-path-traversal-arbitrary-file-read-write</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:17:35.837Z</news:publication_date>
      <news:title>claude-faf-mcp Arbitrary File Read/Write via Unconfined Path Argument</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-17106-moby-go-archive-symlink-tar-path-traversal</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:22:07.463Z</news:publication_date>
      <news:title>CVE-2026-17106: moby/go-archive Symlink-Following Path Traversal in Tar Extraction</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-53951-copier-trust-prefix-path-traversal-rce</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:16:21.297Z</news:publication_date>
      <news:title>CVE-2026-53951: copier Trust-Prefix Bypass via Path Traversal Leads to Arbitrary Command Execution</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-53957-contentful-mcp-server-ssrf-host-proxy-pat-exfiltration</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:04:50.783Z</news:publication_date>
      <news:title>CVE-2026-53957: @contentful/mcp-server SSRF via LLM-Controlled host/proxy Parameters</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-53964-document-merge-service-xlsx-ssti-rce</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:11:48.937Z</news:publication_date>
      <news:title>CVE-2026-53964: document-merge-service Remote Code Execution via SSTI in XLSX Templates</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-53965-mcp-sdk-httptransport-sse-buffer-memory-exhaustion</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T19:30:42.092Z</news:publication_date>
      <news:title>CVE-2026-53965: mcp/sdk HttpTransport Unbounded SSE Buffer Memory Exhaustion</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-53966-xwiki-livedata-livetable-missing-authorization-privilege-escalati</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T19:37:41.404Z</news:publication_date>
      <news:title>CVE-2026-53966: XWiki Platform Live Data Live Table Connector Missing Authorization Privilege Escalation</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-54133-jmespath-php-compiler-runtime-code-injection</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:36:17.844Z</news:publication_date>
      <news:title>CVE-2026-54133: jmespath.php CompilerRuntime Code Injection via Unescaped Function Names</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-54347-froxlor-stored-xss-dns-txt-admin-takeover</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:30:08.023Z</news:publication_date>
      <news:title>CVE-2026-54347: Froxlor Stored XSS in DNS TXT Record Leads to Admin Account Takeover</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-54348-froxlor-second-order-sql-injection-admins-ipaddress</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:28:49.148Z</news:publication_date>
      <news:title>CVE-2026-54348: Froxlor Second-Order SQL Injection via Admins.add ipaddress Parameter</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-55107-kobako-sandbox-escape-public-send-rce</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:42:46.316Z</news:publication_date>
      <news:title>CVE-2026-55107: kobako Sandbox Escape via Unguarded public_send Dispatcher</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-55178-geolens-cross-dataset-authorization-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T18:09:16.825Z</news:publication_date>
      <news:title>CVE-2026-55178: GeoLens Cross-Dataset Authorization Bypass</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-55211-surfio-irap-out-of-bounds-read</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:37:43.246Z</news:publication_date>
      <news:title>CVE-2026-55211: surfio Out-of-Bounds Read in IRAP Binary Parser</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-55224-mineadmin-plugin-path-traversal</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:48:48.168Z</news:publication_date>
      <news:title>CVE-2026-55224: MineAdmin Path Traversal in Plugin Install/Uninstall</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-55839-kestra-stored-xss-markdown-link-attribute-injection</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T16:56:32.599Z</news:publication_date>
      <news:title>CVE-2026-55839: Kestra Stored XSS via Custom Markdown [[link]] Attribute Injection</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-62673-grav-htaccess-case-sensitivity-bypass</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T19:42:07.303Z</news:publication_date>
      <news:title>CVE-2026-62673: Grav .htaccess File Extension Filter Case-Sensitivity Bypass</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-62988-froxlor-api-credential-2fa-disclosure</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:24:36.348Z</news:publication_date>
      <news:title>CVE-2026-62988: Froxlor API Credential and 2FA Secret Disclosure</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-63188-logto-tunnel-path-traversal-static-file</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:28:46.777Z</news:publication_date>
      <news:title>CVE-2026-63188: @logto/tunnel Path Traversal via Unsanitized request.url</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-63337-rabbitmq-amqp-client-unsafe-reflection-jsonrpc</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T16:49:07.442Z</news:publication_date>
      <news:title>CVE-2026-63337: RabbitMQ amqp-client Unsafe Reflection via JSON-RPC javaReturnType</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-69219-rabbitmq-java-client-longstring-oom-dos</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T16:50:29.820Z</news:publication_date>
      <news:title>CVE-2026-69219: RabbitMQ Java Client Unchecked LongString Allocation DoS</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-69220-rabbitmq-java-client-valuereader-uncontrolled-recursion-dos</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T16:55:23.024Z</news:publication_date>
      <news:title>CVE-2026-69220: RabbitMQ Java Client Uncontrolled Recursion DoS via Nested AMQP Tables</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-70666-lemur-acme-ssrf-server-controlled-urls</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:16:21.692Z</news:publication_date>
      <news:title>CVE-2026-70666: Lemur ACME Client Server-Side Request Forgery via Server-Controlled URLs</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-71303-lemur-acme-authority-update-ssrf</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:14:51.232Z</news:publication_date>
      <news:title>CVE-2026-71303: Lemur ACME Authority Update SSRF (Incomplete Fix)</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-71307-lemur-destination-credentials-missing-authorization</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:11:40.379Z</news:publication_date>
      <news:title>CVE-2026-71307: Lemur Authenticated Plaintext Destination Credential Exposure</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-71308-lemur-replaces-authorization-bypass-certificate-hijack</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:10:22.677Z</news:publication_date>
      <news:title>CVE-2026-71308: Lemur Unauthorized Certificate Hijack via Unchecked replaces Field</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/cve-2026-71417-lemur-authorization-bypass-arbitrary-certificate-revocation</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:08:53.742Z</news:publication_date>
      <news:title>CVE-2026-71417: Lemur Authorization Bypass via Duplicate Certificate Upload Enables Arbitrary CA Revocation</news:title>
      <news:keywords>CVE Advisory</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/faf-mcp-path-traversal-arbitrary-file-read-write</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:23:29.592Z</news:publication_date>
      <news:title>faf-mcp Arbitrary File Read/Write via Unconfined Path Argument</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/geolens-authorization-bypass-private-dataset-disclosure</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:10:28.571Z</news:publication_date>
      <news:title>GeoLens Authorization and Cache-Scope Flaws Disclose Private Dataset Data</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/grok-faf-mcp-arbitrary-file-read-unconfined-path</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:24:52.568Z</news:publication_date>
      <news:title>grok-faf-mcp: Arbitrary File Read via Unconfined Path in FAF Tools</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/librenms-oxidized-ssrf-stored-xss-showconfig</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T21:23:21.211Z</news:publication_date>
      <news:title>LibreNMS SSRF-Driven Stored XSS via Oxidized API Response Fields</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/meshcentral-stored-xss-agent-osdesc-injection</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:43:58.849Z</news:publication_date>
      <news:title>MeshCentral Stored XSS via Unsanitized Agent Fields</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/monai-algo-from-pickle-pickle-deserialization-rce-incomplete-fix</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:31:08.298Z</news:publication_date>
      <news:title>MONAI algo_from_pickle() Unsafe Pickle Deserialization RCE (Incomplete Fix)</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/monai-nnunetv2runner-os-command-injection-dataset-name</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:34:51.710Z</news:publication_date>
      <news:title>MONAI nnUNetV2Runner OS Command Injection via dataset_name_or_id</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://securelayer7.net/lab/monai-numpyreader-unsafe-deserialization-allow-pickle-rce</loc>
    <news:news>
      <news:publication>
        <news:name>SecureLayer7</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-08-18T20:28:55.373Z</news:publication_date>
      <news:title>MONAI NumpyReader Unsafe Deserialization via allow_pickle=True</news:title>
      <news:keywords>Security Research</news:keywords>
    </news:news>
  </url>
</urlset>