<?xml version="1.0" encoding="UTF-8"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"><url><loc>https://kkm-mako.com/en/blog/articles/mirasvit-cache-warmer-cve-2026-45247-magento-rce/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-03T18:11:09+00:00</news:publication_date><news:title>Magento Stores Face Server Takeover Flaw CVE-2026-45247, Already Under Attack</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/mirasvit-cache-warmer-cve-2026-45247-magento-rce/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-03T18:10:50+00:00</news:publication_date><news:title>Magento通販に乗っ取りの脆弱性 CVE-2026-45247、攻撃発生中で即更新を</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/apache-mina-cve-2026-47065-deserialization-rce/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-03T12:14:22+00:00</news:publication_date><news:title>Apache MINA Flaw CVE-2026-47065 Lets Attackers Take Over Servers Without a Login</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/apache-mina-cve-2026-47065-deserialization-rce/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-03T12:14:03+00:00</news:publication_date><news:title>Apache MINAに乗っ取りの脆弱性 CVE-2026-47065、ログイン無しで悪用</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/authentik-cve-2026-49448-multiple-vulnerabilities/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-02T22:09:54+00:00</news:publication_date><news:title>authentik Identity Platform: 4 Flaws Let Attackers Skip Login, CVE-2026-49448 — Update Now</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/authentik-cve-2026-49448-multiple-vulnerabilities/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-02T22:09:35+00:00</news:publication_date><news:title>社内ログイン基盤authentikに脆弱性、空送信で突破 CVE-2026-49448ほか4件</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/linux-cgroups-cve-2022-0492-container-escape-kev/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-02T18:07:58+00:00</news:publication_date><news:title>Linux container-escape flaw CVE-2022-0492 exploited; CISA orders a fix</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/linux-cgroups-cve-2022-0492-container-escape-kev/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-02T18:07:40+00:00</news:publication_date><news:title>Linuxのコンテナ脱出脆弱性CVE-2022-0492が悪用中、CISAが修正を指示</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/amazon-kiro-cve-2026-10591-file-write-tasks-json-rce/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-02T17:08:37+00:00</news:publication_date><news:title>Flaw in Amazon's AI dev tool Kiro, CVE-2026-10591: open a folder, run code</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/amazon-kiro-cve-2026-10591-file-write-tasks-json-rce/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-02T17:08:19+00:00</news:publication_date><news:title>AmazonのAI開発ツールKiroに脆弱性 CVE-2026-10591、開くだけでコード実行</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/progress-sitefinity-cve-2026-7198-7312-multiple-vulnerabilities/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-02T15:10:27+00:00</news:publication_date><news:title>Five flaws in enterprise CMS Sitefinity, unauthenticated data exposure: CVE-2026-7198 and more</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/progress-sitefinity-cve-2026-7198-7312-multiple-vulnerabilities/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-02T15:10:07+00:00</news:publication_date><news:title>企業向けCMS Sitefinityに脆弱性5件、無認証で情報露出 CVE-2026-7198ほか</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/openshift-cve-2026-1784-route-haproxy-config-injection/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-02T10:15:10+00:00</news:publication_date><news:title>OpenShift flaw CVE-2026-1784: low-privilege users can hijack cluster traffic</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/openshift-cve-2026-1784-route-haproxy-config-injection/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-02T10:14:51+00:00</news:publication_date><news:title>OpenShiftに脆弱性 CVE-2026-1784、低い権限でクラスターの通信を乗っ取り</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/kirki-cve-2026-8206-account-takeover-password-reset/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-02T05:08:05+00:00</news:publication_date><news:title>WordPress 'Kirki' flaw CVE-2026-8206 lets attackers hijack admin accounts on 500k sites</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/kirki-cve-2026-8206-account-takeover-password-reset/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-02T05:07:46+00:00</news:publication_date><news:title>WordPress『Kirki』に脆弱性 CVE-2026-8206、50万サイトで管理者乗っ取り</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/tp-link-archer-be450-be7200-cve-2026-5509-command-injection/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-02T03:10:35+00:00</news:publication_date><news:title>Flaw in two TP-Link Wi-Fi routers risks full takeover: CVE-2026-5509</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/tp-link-archer-be450-be7200-cve-2026-5509-command-injection/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-02T03:10:16+00:00</news:publication_date><news:title>TP-Link Archerルーターに脆弱性 CVE-2026-5509、最新ファームへ更新を</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/langroid-cve-2026-25879-sqlchatagent-prompt-injection-rce/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-02T00:07:58+00:00</news:publication_date><news:title>Langroid flaw CVE-2026-25879: AI-written SQL can hijack your database</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/langroid-cve-2026-25879-sqlchatagent-prompt-injection-rce/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-02T00:07:39+00:00</news:publication_date><news:title>Langroidに脆弱性 CVE-2026-25879、AIが書いたSQLでデータベース乗っ取り</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/cloud-foundry-uaa-cve-2026-40965-ec-private-key-exposure/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-01T23:08:51+00:00</news:publication_date><news:title>Cloud Foundry UAA leaks its private key: CVE-2026-40965 (CVSS 10.0)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/cloud-foundry-uaa-cve-2026-40965-ec-private-key-exposure/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-01T23:08:32+00:00</news:publication_date><news:title>Cloud Foundryの認証サーバーで秘密鍵漏えい CVE-2026-40965</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/weblogic-cve-2024-21182-kev-exploited/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-06-01T21:17:39+00:00</news:publication_date><news:title>Oracle WebLogic CVE-2024-21182 exploited in the wild; CISA orders a fix</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/weblogic-cve-2024-21182-kev-exploited/</loc><news:news><news:publication><news:name>まこちゃんの技術ジャーナル</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-06-01T21:17:20+00:00</news:publication_date><news:title>WebLogicの脆弱性CVE-2024-21182が悪用中、CISAが緊急是正を指示</news:title></news:news></url></urlset>