<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://justappsec.com/</loc>
<changefreq>weekly</changefreq>
<priority>1</priority>
</url>
<url>
<loc>https://justappsec.com/cves</loc>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides</loc>
<changefreq>weekly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/scorecard</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/contact</loc>
<changefreq>yearly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://justappsec.com/privacy</loc>
<changefreq>yearly</changefreq>
<priority>0.2</priority>
</url>
<url>
<loc>https://justappsec.com/responsible-disclosure</loc>
<changefreq>yearly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://justappsec.com/threat-model</loc>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/threat-model/schema</loc>
<changefreq>monthly</changefreq>
<priority>0.5</priority>
</url>
<url>
<loc>https://justappsec.com/llms.txt</loc>
<changefreq>weekly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://justappsec.com/news</loc>
<lastmod>2026-05-03T00:00:00.000Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://justappsec.com/research</loc>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://justappsec.com/training</loc>
<changefreq>weekly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-nex-forms-unauth-stored-xss-post-key-names</loc>
<lastmod>2026-05-03T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-phantomraven-wave-5-npm-rdd</loc>
<lastmod>2026-05-03T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-starlet-request-smuggling</loc>
<lastmod>2026-05-03T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-argocd-serversidediff-secret-leak</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-circleci-fork-pr-secret-exposure</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-cpanel-auth-bypass-sorry-ransomware</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-pmpro-stripe-webhook-ajax-authorization</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-polaris-s3-wildcard-credential-scope-bypass</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-profile-builder-pro-unauth-object-injection</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-salon-booking-system-unauth-file-read</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-user-verification-otp-bypass</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-wcfm-vendor-idor-user-deletion</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-widget-options-display-logic-eval-rce</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-wordpress-uraf-unauth-file-upload</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-apache-mina-deserialization-allowlist-bypass-take-2</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-apache-neethi-ws-policy-normalization-dos</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-bandit-permessage-deflate-oom-dos</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-bandit-websocket-fragment-reassembly-dos</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-bitwarden-cli-npm-worm-like-supply-chain</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-canonical-ubuntu-ddos-outage</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-copy-fail-linux-lpe-page-cache</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-gravityforms-product-option-stored-xss</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-intercom-php-supply-chain-compromise</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-keystone-ec2-credential-cross-project-scope</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-laboneq-unsafe-deserialization-rce</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-pypi-audit-access-control-fixes</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-4d-server-soap-xxe-file-read-ssrf</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-ai-platforms-indirect-prompt-injection-malware</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-chartbrew-unauth-chart-query-data-exposure</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-cloudfoundry-route-services-egress-bypass</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-ecs-agent-windows-fsx-command-injection</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-gemini-cli-ci-rce-trust-bypass</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-hex-lockfile-checksum-bypass</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-intellij-built-in-web-server-file-disclosure</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-intercom-client-npm-compromise</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-lightning-pypi-credential-stealer</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-lightning-pypi-supply-chain-compromise</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-moveit-automation-auth-bypass</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-openharness-bridge-slash-command-rce</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-temporary-login-auth-bypass</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-wp-editor-csrf-file-overwrite-rce</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-cockpit-collections-rules-rce</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-cpanel-whm-login-auth-bypass</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-cyberchef-show-base64-offsets-xss</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-freertos-plus-tcp-dhcpv6-underflow</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-jenkins-credentials-binding-path-traversal</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-ollama-windows-updater-rce</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-otter-blocks-stripe-cookie-purchase-bypass</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-pgjdbc-scram-pbkdf2-dos</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-sap-cap-npm-mini-shai-hulud</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-sap-cap-npm-preinstall-bun-stealer</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-sureforms-pro-broken-access-control</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-wireshark-tls-dissector-crash-possible-code-execution</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-docsgpt-mcp-stdio-unauth-rce</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-e-sushrut-critical-auth-bypass-otp-exposure</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-git-push-option-injection-github-rce</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-lerobot-grpc-pickle-rce</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-nvflare-dashboard-auth-bypass</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-opencats-installer-config-injection-rce</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-openclaw-unauth-plugin-auth-operator-scopes</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-outline-share-link-idor</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-spring-grpc-securitycontext-cross-request-leak</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-thrift-nodejs-skip-recursion-dos</loc>
<lastmod>2026-04-28T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-apache-mina-allowlist-bypass-rce</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-checkmarx-github-repo-darkweb-post</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-elementary-data-malicious-release</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-latepoint-agent-priv-esc-admin-takeover</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-logontracer-authenticated-command-injection</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-openclaw-ssh-sandbox-symlink-file-write</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-plug-cowboy-http2-atom-exhaustion-dos</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-projeqtor-unauth-sqli-login</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-qnabot-sandbox-bypass-code-exec</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-spring-ai-cosmosdbvectorstore-sql-injection</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-spring-ai-filterexpressionconverter-injection</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-spring-boot-applicationtemp-session-hijack</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-spring-boot-devtools-timing-rce</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-anthropic-mythos-preview-unauthorized-access</loc>
<lastmod>2026-04-26T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-camel-consul-deserialization-rce</loc>
<lastmod>2026-04-26T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-ssh-mcp-description-newline-command-injection</loc>
<lastmod>2026-04-26T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-technitium-dns-cyclic-delegation-amplification</loc>
<lastmod>2026-04-26T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-wp-custom-role-manager-subscriber-priv-esc</loc>
<lastmod>2026-04-27T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-apache-storm-prometheus-global-tls-downgrade</loc>
<lastmod>2026-04-25T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-breeze-cache-unauth-file-upload</loc>
<lastmod>2026-04-25T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-bubblewrap-setuid-ptrace-priv-esc</loc>
<lastmod>2026-04-25T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-gitlab-websocket-access-control-method-invocation</loc>
<lastmod>2026-04-25T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-openclaw-heartbeat-sandbox-bypass</loc>
<lastmod>2026-04-25T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-simple-git-config-rce</loc>
<lastmod>2026-04-25T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-aws-ops-wheel-jwt-auth-bypass</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-axios-no-proxy-loopback-bypass</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-azure-pipelines-axios-supply-chain-guidance</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-bitwarden-cli-npm-supply-chain</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-clerk-createroutematcher-middleware-bypass</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-dgraph-upsert-cond-dql-injection</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-electerm-install-command-injection</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-kyverno-apicall-token-leak</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-obi-tmpdir-file-overwrite</loc>
<lastmod>2026-04-25T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-perforce-insecure-defaults</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-spring-boot-default-security-bypass-actuator</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-tough-tuftool-tuf-delegated-metadata-fixes</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-traefik-stripprefixregex-auth-bypass</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-checkmarx-kics-supply-chain-compromise</loc>
<lastmod>2026-04-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-contour-cookie-rewrite-lua-injection</loc>
<lastmod>2026-04-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-hackage-server-stored-xss-session-hijack</loc>
<lastmod>2026-04-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-mako-templatelookup-path-traversal</loc>
<lastmod>2026-04-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-noir-brillig-heap-corruption</loc>
<lastmod>2026-04-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-paperclip-unauth-rce-import-authz-bypass</loc>
<lastmod>2026-04-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-rclone-unauth-rc-command-exec-fsinfo</loc>
<lastmod>2026-04-23T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-logscale-unauth-path-traversal</loc>
<lastmod>2026-04-22T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-moveit-waf-waf-bypass-command-injection</loc>
<lastmod>2026-04-22T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-atlassian-confluence-jira-security-bulletin</loc>
<lastmod>2026-04-21T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-erb-deserialization-guard-bypass</loc>
<lastmod>2026-04-21T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-ghes-ssrf-timing-side-channel-secret-leak</loc>
<lastmod>2026-04-21T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-opam-install-sandbox-escape</loc>
<lastmod>2026-04-21T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-oracle-http-server-unauth-compromise</loc>
<lastmod>2026-04-21T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-asustor-adm-pptp-vpn-rce</loc>
<lastmod>2026-04-20T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-aws-esdk-python-key-commitment-bypass</loc>
<lastmod>2026-04-20T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-claude-code-symlink-sandbox-escape</loc>
<lastmod>2026-04-20T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-langflow-cve-2026-21445-active-exploitation</loc>
<lastmod>2026-04-20T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-sglang-gguf-ssti-rce</loc>
<lastmod>2026-04-20T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-spring-static-resource-dos</loc>
<lastmod>2026-04-20T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-vercel-security-incident-env-var-exposure</loc>
<lastmod>2026-04-20T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7704</loc>
<lastmod>2026-05-03T16:45:11.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7703</loc>
<lastmod>2026-05-03T16:15:11.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7702</loc>
<lastmod>2026-05-03T15:45:10.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7701</loc>
<lastmod>2026-05-03T15:30:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7700</loc>
<lastmod>2026-05-03T14:15:15.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7699</loc>
<lastmod>2026-05-03T14:00:17.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7698</loc>
<lastmod>2026-05-03T13:30:40.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7697</loc>
<lastmod>2026-05-03T13:15:10.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7696</loc>
<lastmod>2026-05-03T12:30:38.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7695</loc>
<lastmod>2026-05-03T12:15:36.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7694</loc>
<lastmod>2026-05-03T11:45:39.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7692</loc>
<lastmod>2026-05-03T11:00:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7691</loc>
<lastmod>2026-05-03T10:15:11.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7690</loc>
<lastmod>2026-05-03T09:45:10.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7689</loc>
<lastmod>2026-05-03T09:30:13.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7687</loc>
<lastmod>2026-05-03T08:45:14.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7686</loc>
<lastmod>2026-05-03T07:30:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7685</loc>
<lastmod>2026-05-03T07:00:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7684</loc>
<lastmod>2026-05-03T06:45:10.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7683</loc>
<lastmod>2026-05-03T06:30:11.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7682</loc>
<lastmod>2026-05-03T06:15:09.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7681</loc>
<lastmod>2026-05-03T05:00:14.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7680</loc>
<lastmod>2026-05-03T04:30:11.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-5063</loc>
<lastmod>2026-05-03T04:25:49.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7679</loc>
<lastmod>2026-05-03T04:15:10.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7678</loc>
<lastmod>2026-05-03T04:00:14.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7677</loc>
<lastmod>2026-05-03T03:15:33.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7676</loc>
<lastmod>2026-05-03T03:00:45.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7675</loc>
<lastmod>2026-05-03T02:30:11.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7674</loc>
<lastmod>2026-05-03T01:30:14.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7673</loc>
<lastmod>2026-05-03T01:15:37.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7672</loc>
<lastmod>2026-05-03T00:00:41.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7671</loc>
<lastmod>2026-05-02T23:30:13.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7670</loc>
<lastmod>2026-05-02T22:15:13.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7669</loc>
<lastmod>2026-05-02T22:00:19.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7668</loc>
<lastmod>2026-05-02T20:00:15.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7653</loc>
<lastmod>2026-05-02T15:30:19.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7645</loc>
<lastmod>2026-05-02T15:15:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7644</loc>
<lastmod>2026-05-02T15:00:13.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7643</loc>
<lastmod>2026-05-02T14:45:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7642</loc>
<lastmod>2026-05-02T14:30:13.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7633</loc>
<lastmod>2026-05-02T14:00:15.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7632</loc>
<lastmod>2026-05-02T19:46:35.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7631</loc>
<lastmod>2026-05-02T13:30:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-0703</loc>
<lastmod>2026-05-02T13:26:10.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-2554</loc>
<lastmod>2026-05-02T13:26:09.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-3504</loc>
<lastmod>2026-05-02T13:26:09.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7630</loc>
<lastmod>2026-05-02T13:15:13.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7629</loc>
<lastmod>2026-05-02T13:00:15.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7628</loc>
<lastmod>2026-05-02T12:00:14.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/research/authentication</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/business-logic-abuse</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/command-injection</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/cross-origin-resource-sharing</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/cross-site-request-forgery</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/cross-site-scripting</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/file-upload-security</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/insecure-direct-object-references</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/json-web-tokens</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/mass-assignment</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/password-storage</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/path-traversal</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/prompt-injection</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/prototype-pollution</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/row-level-security-patterns-for-postgres</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/secure-software-development-lifecycle</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/server-side-request-forgery</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/session-management</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/sql-injection</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/template-injection</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/threat-modeling</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/automated-threat-model-updates</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/dora-secure-sdlc-for-development-teams</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/nis2-for-development-teams</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/communicating-appsec-risk-to-leadership</loc>
<lastmod>2026-03-23T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/cyber-essentials-for-development-teams</loc>
<lastmod>2026-03-23T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/supply-chain-security-fundamentals</loc>
<lastmod>2026-03-23T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/api-key-security-best-practices</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/how-to-secure-nextjs</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/jwt-security-best-practices</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/llm-tool-calling-security</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/mtls-vs-jwt-vs-oauth-for-service-auth</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/nextjs-csp-configuration</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/nextjs-security-checklist</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/nextjs-ssrf-protection</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/oauth-2-security-best-practices</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/prompt-injection-prevention</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/rate-limiting-in-nodejs</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secrets-management-in-github-actions</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secure-file-uploads-in-nodejs</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secure-password-storage-bcrypt-vs-argon2</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secure-session-management</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secure-webhook-verification</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/securing-rag-pipelines</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/service-to-service-authentication-best-practices</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/sql-injection-prevention-with-prisma</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/webhook-replay-attack-protection</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/training/thinking-like-an-attacker</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/code-review-for-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/web-application-testing</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/api-security-testing</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/bug-bounty-and-responsible-disclosure</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/red-team-basics-for-builders</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/secure-defaults-in-modern-frameworks</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/api-design-that-defends-itself</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/data-protection-and-encryption</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/secrets-management</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/microservice-and-serverless-boundaries</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/ai-integration-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/injection-today</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/xss-in-modern-frameworks</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/authentication-patterns</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/authorisation-and-access-control</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/session-management</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/secure-file-handling</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/input-validation-and-schema-enforcement</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/ssrf-and-request-forgery</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/logging-and-detection-engineering</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/monitoring-and-alerting-for-security-events</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/incident-response-for-teams-that-ship-daily</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/vulnerability-management</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/waf-cdn-and-edge-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/compliance-as-code</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/cicd-pipeline-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/dependency-and-supply-chain-management</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/container-and-image-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/infrastructure-as-code</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/secrets-in-pipelines</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/artifact-signing-and-provenance</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/security-mindset-for-developers</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/threat-modelling-without-the-ceremony</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/attack-surface-of-a-modern-web-app</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/trust-boundaries-and-data-flow</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/bridging-dev-and-security-teams</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/labs/xss-encoding</loc>
<changefreq>monthly</changefreq>
<priority>0.4</priority>
</url>
</urlset>
