<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://mcpsec.dev/advisories/2025-09-02-grafana-mcp-unauthenticated-sse-access/</loc>
<lastmod>2025-09-02T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/advisories/2025-09-03-thirdweb-mcp-unauthorized-transactions/</loc>
<lastmod>2025-09-03T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/advisories/2025-09-19-coder-chat-exfiltration/</loc>
<lastmod>2025-09-19T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/advisories/2025-10-02-kilo-code-ai-agent-supply-chain-attack/</loc>
<lastmod>2025-10-02T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/advisories/2025-10-03-amp-dns-exfiltration-prompt-injection/</loc>
<lastmod>2025-10-03T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/advisories/2025-10-06-vet-mcp-dns-rebinding/</loc>
<lastmod>2025-10-06T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/advisories/2025-10-13-neo4j-cypher-mcp-dns-rebinding/</loc>
<lastmod>2025-10-13T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/advisories/2025-10-16-kluster-dns-rebinding/</loc>
<lastmod>2025-10-16T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/advisories/2026-01-15-aws-labs-mq-mcp-sse-unauthenticated-access/</loc>
<lastmod>2026-01-15T00:00:00+00:00</lastmod>
</url>
<url>
<loc>https://mcpsec.dev/about/</loc>
</url>
<url>
<loc>https://mcpsec.dev/rss/</loc>
</url>
<url>
<loc>https://mcpsec.dev/advisories/</loc>
</url>
<url>
<loc>https://mcpsec.dev/</loc>
</url>
</urlset>
