<?xml version="1.0" encoding="UTF-8"?>
<urlset
  xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
  xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"
>
  <url>
    <loc>https://invaders.ie/resources/blog/vulnerability/unfixed-gogs-flaw-can-turn-pull-requests-into-server-side-rce</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-02T08:09:14.454Z</news:publication_date>
      <news:title>Unfixed Gogs flaw can turn pull requests into server-side RCE</news:title>
      <news:keywords>Gogs authenticated RCE, Gogs argument injection, Rapid7 Gogs rebase vulnerability, self-hosted Git server security, Gogs no patch</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://invaders.ie/resources/blog/vulnerability/palo-alto-globalprotect-auth-bypass-turns-cookie-trust-into-vpn-access-risk</loc>
    <news:news>
      <news:publication>
        <news:name>Invaders Security</news:name>
        <news:language>en</news:language>
      </news:publication>
      <news:publication_date>2026-06-01T08:07:26.153Z</news:publication_date>
      <news:title>Palo Alto GlobalProtect auth bypass turns cookie trust into VPN access risk</news:title>
      <news:keywords>CVE-2026-0257, PAN-OS GlobalProtect authentication bypass, Palo Alto VPN cookie vulnerability, Rapid7 GlobalProtect exploitation, GlobalProtect authentication override cookies</news:keywords>
    </news:news>
  </url>
</urlset>