<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://threatfrontier.com/articles/x64dbg-mcp-server-cve-2026-107824-unauthenticated-debugger</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-11T10:29:56.213Z</news:publication_date>
      <news:title>x64dbg MCP plugin shipped an unauthenticated debugger on every network interface (CVE-2026-107824)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/tensorlake-npm-shai-hulud-worm-token-revocation-wipe</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T11:10:16.071Z</news:publication_date>
      <news:title>Tensorlake npm Worm: Revoking the Stolen GitHub Token Can Trigger a Home-Directory Wipe, Socket Says</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/claude-code-symlink-race-cve-2026-103435</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T10:57:24.816Z</news:publication_date>
      <news:title>Claude Code symlink race lets file writes escape the project directory (CVE-2026-103435)</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/onlyoffice-docs-cve-2021-3199-path-traversal-cisa-kev</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T01:48:12.909Z</news:publication_date>
      <news:title>CISA adds ONLYOFFICE Docs path traversal CVE-2021-3199 to KEV with a three-day deadline</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/cisco-license-on-prem-cve-2026-76482-cvss-10-signature-verification-no-workaround</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T01:40:44.024Z</news:publication_date>
      <news:title>Cisco Patches Four License On-Prem Flaws, Including a CVSS 10.0 Signature Bug</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://threatfrontier.com/articles/citrix-netscaler-saml-cve-2026-107406</loc>
    <news:news>
      <news:publication>
        <news:name>ThreatFrontier.com</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-10-10T01:34:19.791Z</news:publication_date>
      <news:title>Citrix NetScaler CVE-2026-107406: Critical SAML Flaw Reaches Last Week&apos;s Patched IdP Builds</news:title>
    </news:news>
  </url>
</urlset>
