<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://justappsec.com/</loc>
<changefreq>weekly</changefreq>
<priority>1</priority>
</url>
<url>
<loc>https://justappsec.com/cves</loc>
<changefreq>daily</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides</loc>
<changefreq>weekly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/scorecard</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/contact</loc>
<changefreq>yearly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://justappsec.com/privacy</loc>
<changefreq>yearly</changefreq>
<priority>0.2</priority>
</url>
<url>
<loc>https://justappsec.com/responsible-disclosure</loc>
<changefreq>yearly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://justappsec.com/threat-model</loc>
<changefreq>monthly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/threat-model/schema</loc>
<changefreq>monthly</changefreq>
<priority>0.5</priority>
</url>
<url>
<loc>https://justappsec.com/llms.txt</loc>
<changefreq>weekly</changefreq>
<priority>0.3</priority>
</url>
<url>
<loc>https://justappsec.com/news</loc>
<lastmod>2026-05-11T00:00:00.000Z</lastmod>
<changefreq>daily</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://justappsec.com/research</loc>
<changefreq>weekly</changefreq>
<priority>0.9</priority>
</url>
<url>
<loc>https://justappsec.com/training</loc>
<changefreq>weekly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-checkmarx-jenkins-ast-plugin-rogue-release</loc>
<lastmod>2026-05-11T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-tanstack-npm-mini-shai-hulud-supply-chain</loc>
<lastmod>2026-05-12T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-php-soap-apache-map-uaf-rce</loc>
<lastmod>2026-05-10T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-argo-template-restriction-bypass</loc>
<lastmod>2026-05-09T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-axios-http-adapter-prototype-pollution</loc>
<lastmod>2026-05-08T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-spring-cloud-config-traversal</loc>
<lastmod>2026-05-06T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-github-mcp-secret-scanning-ga</loc>
<lastmod>2026-05-05T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-nex-forms-unauth-stored-xss-post-key-names</loc>
<lastmod>2026-05-03T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-phantomraven-wave-5-npm-rdd</loc>
<lastmod>2026-05-03T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-starlet-request-smuggling</loc>
<lastmod>2026-05-03T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-argocd-serversidediff-secret-leak</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-circleci-fork-pr-secret-exposure</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-cpanel-auth-bypass-sorry-ransomware</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-pmpro-stripe-webhook-ajax-authorization</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-polaris-s3-wildcard-credential-scope-bypass</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-profile-builder-pro-unauth-object-injection</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-salon-booking-system-unauth-file-read</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-user-verification-otp-bypass</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-wcfm-vendor-idor-user-deletion</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-widget-options-display-logic-eval-rce</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-wordpress-uraf-unauth-file-upload</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-apache-mina-deserialization-allowlist-bypass-take-2</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-apache-neethi-ws-policy-normalization-dos</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-bandit-permessage-deflate-oom-dos</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-bandit-websocket-fragment-reassembly-dos</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-bitwarden-cli-npm-worm-like-supply-chain</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-canonical-ubuntu-ddos-outage</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-copy-fail-linux-lpe-page-cache</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-gravityforms-product-option-stored-xss</loc>
<lastmod>2026-05-02T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-intercom-php-supply-chain-compromise</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-keystone-ec2-credential-cross-project-scope</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-laboneq-unsafe-deserialization-rce</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-05-pypi-audit-access-control-fixes</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-4d-server-soap-xxe-file-read-ssrf</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-ai-platforms-indirect-prompt-injection-malware</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-chartbrew-unauth-chart-query-data-exposure</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-cloudfoundry-route-services-egress-bypass</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-ecs-agent-windows-fsx-command-injection</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-gemini-cli-ci-rce-trust-bypass</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-hex-lockfile-checksum-bypass</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-intellij-built-in-web-server-file-disclosure</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-intercom-client-npm-compromise</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-lightning-pypi-credential-stealer</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-lightning-pypi-supply-chain-compromise</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-moveit-automation-auth-bypass</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-openharness-bridge-slash-command-rce</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-temporary-login-auth-bypass</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-wp-editor-csrf-file-overwrite-rce</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-cockpit-collections-rules-rce</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-cpanel-whm-login-auth-bypass</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-cyberchef-show-base64-offsets-xss</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-freertos-plus-tcp-dhcpv6-underflow</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-jenkins-credentials-binding-path-traversal</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-ollama-windows-updater-rce</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-otter-blocks-stripe-cookie-purchase-bypass</loc>
<lastmod>2026-04-30T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-pgjdbc-scram-pbkdf2-dos</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-sap-cap-npm-mini-shai-hulud</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-sap-cap-npm-preinstall-bun-stealer</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-sureforms-pro-broken-access-control</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/news/2026-04-wireshark-tls-dissector-crash-possible-code-execution</loc>
<lastmod>2026-04-29T00:00:00.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.7</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2025-36515</loc>
<lastmod>2026-05-12T16:35:19.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2025-36510</loc>
<lastmod>2026-05-12T16:35:17.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2025-35991</loc>
<lastmod>2026-05-12T16:35:14.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2025-35990</loc>
<lastmod>2026-05-12T16:35:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2025-35979</loc>
<lastmod>2026-05-12T16:35:09.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2025-35969</loc>
<lastmod>2026-05-12T16:35:07.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2025-27723</loc>
<lastmod>2026-05-12T16:35:04.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20914</loc>
<lastmod>2026-05-12T16:35:01.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20905</loc>
<lastmod>2026-05-12T16:34:58.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20887</loc>
<lastmod>2026-05-12T16:34:56.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20881</loc>
<lastmod>2026-05-12T16:34:54.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20879</loc>
<lastmod>2026-05-12T16:34:51.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20794</loc>
<lastmod>2026-05-12T16:34:49.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20793</loc>
<lastmod>2026-05-12T16:34:47.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20782</loc>
<lastmod>2026-05-12T16:34:44.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20772</loc>
<lastmod>2026-05-12T16:34:42.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20771</loc>
<lastmod>2026-05-12T16:34:40.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20754</loc>
<lastmod>2026-05-12T16:34:35.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20753</loc>
<lastmod>2026-05-12T16:34:33.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20751</loc>
<lastmod>2026-05-12T16:34:31.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20738</loc>
<lastmod>2026-05-12T16:34:28.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20718</loc>
<lastmod>2026-05-12T16:34:26.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-20717</loc>
<lastmod>2026-05-12T16:34:23.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-40300</loc>
<lastmod>2026-05-12T16:33:02.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-25431</loc>
<lastmod>2026-05-12T16:32:39.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43993</loc>
<lastmod>2026-05-12T16:29:41.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43992</loc>
<lastmod>2026-05-12T16:25:30.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43990</loc>
<lastmod>2026-05-12T16:22:22.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43989</loc>
<lastmod>2026-05-12T16:21:29.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43991</loc>
<lastmod>2026-05-12T16:19:54.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-34187</loc>
<lastmod>2026-05-12T15:13:28.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-30810</loc>
<lastmod>2026-05-12T15:12:46.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-30808</loc>
<lastmod>2026-05-12T15:11:45.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-30807</loc>
<lastmod>2026-05-12T15:11:01.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-30805</loc>
<lastmod>2026-05-12T15:09:57.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-8111</loc>
<lastmod>2026-05-12T14:33:45.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-8110</loc>
<lastmod>2026-05-12T14:31:26.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-8109</loc>
<lastmod>2026-05-12T14:29:10.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-8051</loc>
<lastmod>2026-05-12T14:24:42.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7432</loc>
<lastmod>2026-05-12T14:21:58.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43983</loc>
<lastmod>2026-05-12T14:19:01.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-7431</loc>
<lastmod>2026-05-12T15:45:16.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-32687</loc>
<lastmod>2026-05-12T14:20:21.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-8043</loc>
<lastmod>2026-05-12T15:44:12.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-42260</loc>
<lastmod>2026-05-12T14:09:05.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43937</loc>
<lastmod>2026-05-12T15:42:43.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-6866</loc>
<lastmod>2026-05-12T15:43:40.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-5061</loc>
<lastmod>2026-05-12T15:43:01.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43938</loc>
<lastmod>2026-05-12T15:39:46.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/CVE-2026-43939</loc>
<lastmod>2026-05-12T13:56:39.000Z</lastmod>
<changefreq>weekly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/research/authentication</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/business-logic-abuse</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/command-injection</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/cross-origin-resource-sharing</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/cross-site-request-forgery</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/cross-site-scripting</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/file-upload-security</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/insecure-direct-object-references</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/json-web-tokens</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/mass-assignment</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/password-storage</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/path-traversal</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/prompt-injection</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/prototype-pollution</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/row-level-security-patterns-for-postgres</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/secure-software-development-lifecycle</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/server-side-request-forgery</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/session-management</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/sql-injection</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/template-injection</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/research/threat-modeling</loc>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/automated-threat-model-updates</loc>
<lastmod>2026-05-01T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/dora-secure-sdlc-for-development-teams</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/nis2-for-development-teams</loc>
<lastmod>2026-04-24T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/communicating-appsec-risk-to-leadership</loc>
<lastmod>2026-03-23T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/cyber-essentials-for-development-teams</loc>
<lastmod>2026-03-23T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/supply-chain-security-fundamentals</loc>
<lastmod>2026-03-23T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/api-key-security-best-practices</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/how-to-secure-nextjs</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/jwt-security-best-practices</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/llm-tool-calling-security</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/mtls-vs-jwt-vs-oauth-for-service-auth</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/nextjs-csp-configuration</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/nextjs-security-checklist</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/nextjs-ssrf-protection</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/oauth-2-security-best-practices</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/prompt-injection-prevention</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/rate-limiting-in-nodejs</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secrets-management-in-github-actions</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secure-file-uploads-in-nodejs</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secure-password-storage-bcrypt-vs-argon2</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secure-session-management</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/secure-webhook-verification</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/securing-rag-pipelines</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/service-to-service-authentication-best-practices</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/sql-injection-prevention-with-prisma</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/guides/webhook-replay-attack-protection</loc>
<lastmod>2026-03-04T00:00:00.000Z</lastmod>
<changefreq>monthly</changefreq>
<priority>0.8</priority>
</url>
<url>
<loc>https://justappsec.com/training/thinking-like-an-attacker</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/code-review-for-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/web-application-testing</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/api-security-testing</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/bug-bounty-and-responsible-disclosure</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/red-team-basics-for-builders</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/secure-defaults-in-modern-frameworks</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/api-design-that-defends-itself</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/data-protection-and-encryption</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/secrets-management</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/microservice-and-serverless-boundaries</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/ai-integration-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/injection-today</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/xss-in-modern-frameworks</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/authentication-patterns</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/authorisation-and-access-control</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/session-management</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/secure-file-handling</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/input-validation-and-schema-enforcement</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/ssrf-and-request-forgery</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/logging-and-detection-engineering</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/monitoring-and-alerting-for-security-events</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/incident-response-for-teams-that-ship-daily</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/vulnerability-management</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/waf-cdn-and-edge-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/compliance-as-code</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/cicd-pipeline-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/dependency-and-supply-chain-management</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/container-and-image-security</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/infrastructure-as-code</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/secrets-in-pipelines</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/artifact-signing-and-provenance</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/security-mindset-for-developers</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/threat-modelling-without-the-ceremony</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/attack-surface-of-a-modern-web-app</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/trust-boundaries-and-data-flow</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/bridging-dev-and-security-teams</loc>
<changefreq>monthly</changefreq>
<priority>0.6</priority>
</url>
<url>
<loc>https://justappsec.com/training/labs/xss-encoding</loc>
<changefreq>monthly</changefreq>
<priority>0.4</priority>
</url>
</urlset>
