<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress.com" -->
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
	xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd"
	xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
	xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"
	xmlns:image="http://www.google.com/schemas/sitemap-image/1.1"
	>
<url><loc>https://sherer.io/2026/09/22/veeam-agent-for-windows-cve-2026-32996-active-local-privilege-escalation-to-system/</loc><news:news><news:publication><news:name>Killian Sherer</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-09-22T13:32:38+00:00</news:publication_date><news:title>Veeam Agent for Windows CVE-2026-32996 &#8211; Active Local Privilege Escalation to SYSTEM</news:title></news:news></url><url><loc>https://sherer.io/2026/09/22/zyxel-gs1900-cve-2026-7273-active-unauthenticated-os-command-execution/</loc><news:news><news:publication><news:name>Killian Sherer</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-09-22T13:32:31+00:00</news:publication_date><news:title>Zyxel GS1900 CVE-2026-7273 &#8211; Active Unauthenticated OS Command Execution</news:title></news:news></url><url><loc>https://sherer.io/2026/09/22/velocloud-orchestrator-cve-2026-93952-actively-exploited-cvss-10-0-pre-authentication-compromise/</loc><news:news><news:publication><news:name>Killian Sherer</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-09-22T13:32:23+00:00</news:publication_date><news:title>VeloCloud Orchestrator CVE-2026-93952 &#8211; Actively Exploited CVSS 10.0 Pre-Authentication Compromise</news:title></news:news></url><url><loc>https://sherer.io/2026/09/21/crowdsec-repository-theft-former-employee-github-oauth-token-abuse/</loc><news:news><news:publication><news:name>Killian Sherer</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-09-21T13:17:36+00:00</news:publication_date><news:title>CrowdSec Repository Theft &#8211; Former Employee GitHub OAuth Token Abuse</news:title></news:news></url><url><loc>https://sherer.io/2026/09/21/gravity-forms-cve-2026-84434-unauthenticated-file-upload-to-rce/</loc><news:news><news:publication><news:name>Killian Sherer</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-09-21T13:17:27+00:00</news:publication_date><news:title>Gravity Forms CVE-2026-84434 &#8211; Unauthenticated File Upload to RCE</news:title></news:news></url><url><loc>https://sherer.io/2026/09/21/indexed-btree-npm-runtime-supply-chain-malware/</loc><news:news><news:publication><news:name>Killian Sherer</news:name><news:language>en</news:language></news:publication><news:publication_date>2026-09-21T13:17:19+00:00</news:publication_date><news:title>indexed-btree npm Runtime Supply-Chain Malware</news:title></news:news></url></urlset>
