<?xml version="1.0" encoding="UTF-8"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"><url><loc>https://kkm-mako.com/en/blog/articles/apache-traffic-server-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T09:26:32+00:00</news:publication_date><news:title>Apache Traffic Server: five more CVEs flip the ranking</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/apache-traffic-server-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T09:26:15+00:00</news:publication_date><news:title>Apache Traffic Server、物差しを替えると順位が逆転 CVE-2026-58155</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/wordpress-plugins-2026-07-29-payment-tampering-roundup/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T08:42:48+00:00</news:publication_date><news:title>No-login order tampering: nine WordPress flaws (CVE-2026-13692)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/wordpress-plugins-2026-07-29-payment-tampering-roundup/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T08:42:30+00:00</news:publication_date><news:title>WordPress脆弱性9件、無認証で決済金額を改ざん CVE-2026-13692</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/microsoft-cloud-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:49:21+00:00</news:publication_date><news:title>Six Microsoft cloud flaws scored 10.0 including CVE-2026-62825 need no customer action</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/microsoft-cloud-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:49:04+00:00</news:publication_date><news:title>Azure Key Vaultなど危険度10.0が6件 CVE-2026-62825、更新作業は不要</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/libssh2-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:48:11+00:00</news:publication_date><news:title>libssh2: ten 2026 flaws, no release since 2024 (CVE-2026-66032)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/libssh2-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:47:54+00:00</news:publication_date><news:title>libssh2に脆弱性10件、公式の最新版は2024年のまま CVE-2026-66032</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/apache-activemq-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:17:33+00:00</news:publication_date><news:title>ActiveMQ Shut Down Without Login: CVE-2026-59878, Fix in 5.19.9/6.2.8</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/apache-activemq-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:17:17+00:00</news:publication_date><news:title>ActiveMQに認証なしで止められる脆弱性 CVE-2026-59878、5.19.9／6.2.8へ</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/adobe-bridge-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:16:23+00:00</news:publication_date><news:title>Adobe Bridge and Photoshop: 9 Flaws Fixed, CVE-2026-48395 the Worst</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/adobe-bridge-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:16:05+00:00</news:publication_date><news:title>Adobe Bridgeほか9件の脆弱性、CVE-2026-48395で素材を開くと乗っ取り</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/pglogical-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:15:10+00:00</news:publication_date><news:title>PostgreSQL Extension pglogical: CVE-2026-50736 Superuser Escalation</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/pglogical-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:14:52+00:00</news:publication_date><news:title>PostgreSQL拡張pglogical、受け側が最高権限 CVE-2026-50736は2.4.8へ</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/dompdf-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:13:45+00:00</news:publication_date><news:title>Dompdf: 6 Flaws Including CVE-2026-59941, PHP PDF Apps Need 3.1.6</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/dompdf-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:13:27+00:00</news:publication_date><news:title>Dompdfに脆弱性6件 CVE-2026-59941、PHPで請求書PDFを作るなら3.1.6へ</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/apache-axis2-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:12:25+00:00</news:publication_date><news:title>Axis2 CVE-2026-66713 Rates 9.8 But Only Hits a Default-Off Feature</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/apache-axis2-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:12:06+00:00</news:publication_date><news:title>Axis2の脆弱性CVE-2026-66713は危険度9.8、既定では無効な機能が対象</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/terraform-mcp-server-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:10:27+00:00</news:publication_date><news:title>Terraform MCP Server: Others Can Act With Your Token (CVE-2026-16498)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/terraform-mcp-server-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:10:10+00:00</news:publication_date><news:title>Terraform MCP連携に他人の権限で操作される穴 CVE-2026-16498、1.1.0へ</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/ibm-websphere-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:09:16+00:00</news:publication_date><news:title>WebSphere: 14 Flaws, Server Takeover Without a Login (CVE-2026-14512)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/ibm-websphere-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:09:00+00:00</news:publication_date><news:title>WebSphereに脆弱性14件、ログインなしで乗っ取りの恐れ CVE-2026-14512</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/manageengine-adaudit-plus-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T05:08:05+00:00</news:publication_date><news:title>ManageEngine ADAudit Plus Unauthenticated RCE: CVE-2026-6516, CVSS 10</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/manageengine-adaudit-plus-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T05:07:48+00:00</news:publication_date><news:title>ManageEngine ADAudit Plusに認証なしで乗っ取られる欠陥 CVE-2026-6516</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/tegalog-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-29T04:24:54+00:00</news:publication_date><news:title>Tegalog flaw lets anyone log in as admin (CVE-2026-64940)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/tegalog-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-29T04:24:37+00:00</news:publication_date><news:title>てがろぐに不正ログインの欠陥 CVE-2026-64940、旧版すべてが対象で4.9.0へ</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/samsung-galaxy-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-28T13:00:48+00:00</news:publication_date><news:title>Three Galaxy flaws exploitable with no user action, fixed in the July update (CVE-2026-21047)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/samsung-galaxy-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-28T13:00:31+00:00</news:publication_date><news:title>Galaxyに操作不要で乗っ取られる脆弱性3件、7月更新で修正 CVE-2026-21047</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/cowboy-cowlib-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-28T11:06:24+00:00</news:publication_date><news:title>RabbitMQ can be taken down with no login, and no fixed release yet (CVE-2026-59248)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/cowboy-cowlib-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-28T11:06:08+00:00</news:publication_date><news:title>RabbitMQがログイン不要で止められる脆弱性 CVE-2026-59248、対策版待ち</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/elecom-router-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-28T10:02:46+00:00</news:publication_date><news:title>Three flaws across seven ELECOM Wi-Fi routers and access points (CVE-2026-59764)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/elecom-router-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-28T10:02:29+00:00</news:publication_date><news:title>エレコムのルーター7機種に脆弱性3件、乗っ取りの恐れ CVE-2026-59764</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/bouncy-castle-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-28T09:10:57+00:00</news:publication_date><news:title>Bouncy Castle can leak a private key through timing: CVE-2024-14041, fixed in 1.78</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/bouncy-castle-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-28T09:10:36+00:00</news:publication_date><news:title>Bouncy Castleに秘密鍵を盗まれる脆弱性 CVE-2024-14041、1.78以降は安全</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/dassault-3dexperience-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-28T09:09:33+00:00</news:publication_date><news:title>3DEXPERIENCE hit by a perfect 10.0 flaw: CVE-2026-11756 targets the designer's PC</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/dassault-3dexperience-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-28T09:09:17+00:00</news:publication_date><news:title>CATIAの基盤3DEXPERIENCEに最悪10点の脆弱性 CVE-2026-11756、設計PCが標的</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/wordpress-plugins-2026-07-28-site-takeover-roundup/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-28T07:51:11+00:00</news:publication_date><news:title>Eighteen WordPress plugin flaws, two with no fix at all (CVE-2026-15014)</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/wordpress-plugins-2026-07-28-site-takeover-roundup/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-28T07:50:54+00:00</news:publication_date><news:title>WordPressプラグイン18件に脆弱性、2件は修正版なし CVE-2026-15014</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/vbulletin-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-27T15:19:10+00:00</news:publication_date><news:title>vBulletin Forum Software Hit by Critical Flaw CVE-2026-61511: Unauthenticated Server Takeover</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/vbulletin-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-27T15:18:54+00:00</news:publication_date><news:title>掲示板ソフトvBulletinに緊急の脆弱性 CVE-2026-61511、ログイン不要で乗っ取り</news:title></news:news></url><url><loc>https://kkm-mako.com/en/blog/articles/apache-thrift-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-07-27T13:14:43+00:00</news:publication_date><news:title>Apache Thrift Hit by 5 Vulnerabilities: Traffic Eavesdropping and Service Outage Risks (CVE-2026-48144, CVSS 9.1)—Update to 0.24.0</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/apache-thrift-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-27T13:14:27+00:00</news:publication_date><news:title>Apache Thriftに5件の脆弱性、通信の盗み見や機能停止の恐れ CVE-2026-48144</news:title></news:news></url><url><loc>https://kkm-mako.com/blog/articles/pillow-cve/</loc><news:news><news:publication><news:name>Canarii</news:name><news:language>ja</news:language></news:publication><news:publication_date>2026-07-27T12:52:08+00:00</news:publication_date><news:title>Pillowの脆弱性まとめ｜2026年7月の13件はすべて12.3.0で解決 CVE-2026-54058ほか</news:title></news:news></url></urlset>