<?xml version="1.0" encoding="UTF-8"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"><url><loc>https://kkm-mako.com/en/blog/articles/bind-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-22T16:10:13+00:00</news:publication_date><news:title>DNS software "BIND" can be tricked into trusting forged answers (CVE-2026-13321) — update to 9.20.26 / 9.21.24</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/bind-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-22T16:10:02+00:00</news:publication_date><news:title>DNSの定番ソフト「BIND」に偽の応答を信じ込まされる脆弱性 CVE-2026-13321、9.20.26／9.21.24へ更新を</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/grav-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-22T13:12:31+00:00</news:publication_date><news:title>Critical Grav CMS flaws (CVE-2026-65008 and more) risk site takeover — update now</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/grav-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-22T13:12:20+00:00</news:publication_date><news:title>サイト作成ソフト「Grav」に深刻な脆弱性が複数、CVE-2026-65008などでサイト乗っ取りの恐れ 最新版へ更新を</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/plane-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-22T03:25:34+00:00</news:publication_date><news:title>Plane Bug CVE-2026-46558 Lets Any Logged-In User Read and Delete Other Teams' Files — Update to v1.3.1</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/plane-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-22T03:25:24+00:00</news:publication_date><news:title>プロジェクト管理ツール『Plane』に別チームのファイルを盗み見・削除できる脆弱性 CVE-2026-46558、v1.3.1へ即更新を</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/oracle-critical-patch-update-2026-07/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-21T23:22:45+00:00</news:publication_date><news:title>Oracle's quarterly patch hits a record 1,455 fixes, with no-login takeover flaws in WebLogic and more (July 2026)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/oracle-critical-patch-update-2026-07/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-21T23:22:34+00:00</news:publication_date><news:title>Oracleの四半期パッチが過去最多1455件、WebLogicなどに無認証で乗っ取りの脆弱性（2026年7月）</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/tenable-security-center-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-21T21:22:00+00:00</news:publication_date><news:title>Four critical flaws in Tenable Security Center: CVE-2026-64878 et al. — post-login takeover, update to 6.8.0</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/tenable-security-center-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-21T21:21:48+00:00</news:publication_date><news:title>脆弱性管理製品『Tenable Security Center』に脆弱性4件 CVE-2026-64878ほか、ログイン後にサーバー乗っ取りの恐れ 6.8.0へ更新を</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/solarwinds-serv-u-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-21T18:24:59+00:00</news:publication_date><news:title>14 takeover flaws in enterprise file transfer SolarWinds Serv-U: CVE-2026-28302 et al. — update now</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/solarwinds-serv-u-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-21T18:24:49+00:00</news:publication_date><news:title>企業向けファイル転送『SolarWinds Serv-U』に脆弱性14件 CVE-2026-28302ほか、管理者権限からサーバー乗っ取りの恐れ</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/home-assistant-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-21T17:26:08+00:00</news:publication_date><news:title>Path-traversal takeover flaw in smart-home Home Assistant: CVE-2026-64825 — update to 2026.6.0</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/home-assistant-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-21T17:25:58+00:00</news:publication_date><news:title>スマートホーム基盤『Home Assistant』に脆弱性 CVE-2026-64825、初期設定・復元を突かれ乗っ取りの恐れ 2026.6.0へ更新を</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/ninja-forms-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-21T16:23:21+00:00</news:publication_date><news:title>Admin-takeover flaws in WordPress Ninja Forms: CVE-2026-65048 and CVE-2026-65049 — update to 3.14.9</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/ninja-forms-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-21T16:23:10+00:00</news:publication_date><news:title>WordPress『Ninja Forms』に管理者乗っ取りの脆弱性 CVE-2026-65048ほか、60万サイトは3.14.9へ更新を</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/xrdp-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-20T17:46:51+00:00</news:publication_date><news:title>Pre-Login Takeover Flaw in Linux Remote Desktop 'xrdp': 10 Flaws Fixed at Once (CVE-2026-41252), Update to 0.10.6.1</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/xrdp-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-20T17:46:41+00:00</news:publication_date><news:title>Linux用リモートデスクトップ『xrdp』に認証不要で乗っ取りの脆弱性、計10件を一括修正 CVE-2026-41252ほか、0.10.6.1へ即更新を</news:title></news:news></url></urlset>