<?xml version="1.0" encoding="UTF-8"?>
<!-- This sitemap was dynamically generated on June 16, 2026 at 11:58 am by All in One SEO v4.9.8 - the original SEO plugin for WordPress. -->

<?xml-stylesheet type="text/xsl" href="https://www.netservicesgroup.com/default-sitemap.xsl"?>

<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>Network Services Group</title>
		<link><![CDATA[https://www.netservicesgroup.com]]></link>
		<description><![CDATA[Network Services Group]]></description>
		<lastBuildDate><![CDATA[Wed, 04 Sep 2024 01:29:13 +0000]]></lastBuildDate>
		<docs>https://validator.w3.org/feed/docs/rss2.html</docs>
		<atom:link href="https://www.netservicesgroup.com/sitemap.rss" rel="self" type="application/rss+xml" />
		<ttl><![CDATA[60]]></ttl>

		<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/]]></link>
			<title>Blog</title>
			<pubDate><![CDATA[Wed, 04 Sep 2024 01:29:13 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/how-voip-helps-remote-teams-work-smarter/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/how-voip-helps-remote-teams-work-smarter/]]></link>
			<title>How VoIP helps remote teams work smarter</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:39:37 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/use-viva-insights-to-build-a-more-productive-team/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/use-viva-insights-to-build-a-more-productive-team/]]></link>
			<title>Use Viva Insights to build a more productive team</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:39:37 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/microsoft-edge-features-that-help-you-work-smarter-in-2026/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/microsoft-edge-features-that-help-you-work-smarter-in-2026/]]></link>
			<title>Microsoft Edge features that help you work smarter in 2026</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:39:37 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/practical-strategies-for-securing-your-corporate-windows-webcams/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/practical-strategies-for-securing-your-corporate-windows-webcams/]]></link>
			<title>Practical strategies for securing your corporate Windows webcams</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:39:36 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/should-you-use-private-browsing-to-protect-your-data/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/should-you-use-private-browsing-to-protect-your-data/]]></link>
			<title>Should you use private browsing to protect your data?</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:39:36 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/how-hospitals-can-keep-thousands-of-connected-devices-secure/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/how-hospitals-can-keep-thousands-of-connected-devices-secure/]]></link>
			<title>How hospitals can keep thousands of connected devices secure</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:39:36 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/why-identity-is-the-new-internal-highway-for-cyberattacks/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/why-identity-is-the-new-internal-highway-for-cyberattacks/]]></link>
			<title>Why identity is the new internal highway for cyberattacks</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:39:36 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/optimizing-desktop-and-laptop-settings-for-eco-friendly-computing/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/optimizing-desktop-and-laptop-settings-for-eco-friendly-computing/]]></link>
			<title>Optimizing desktop and laptop settings for eco-friendly computing</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:39:36 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/how-saas-helps-smbs-save-money-and-work-more-efficiently/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/how-saas-helps-smbs-save-money-and-work-more-efficiently/]]></link>
			<title>How SaaS helps SMBs save money and work more efficiently</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:38:07 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-34182-cms-authenvelopeddata-processing-may-accept-forged-messages/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-34182-cms-authenvelopeddata-processing-may-accept-forged-messages/]]></link>
			<title>CVE-2026-34182 CMS AuthEnvelopedData Processing May Accept Forged Messages</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:37:42 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/]]></link>
			<title>Welcome to Network Services Group</title>
			<pubDate><![CDATA[Tue, 05 Aug 2025 20:21:25 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-54411-linux-pam-through-1-7-2-contains-an-observable-timing-discrepancy-cwe-208-in-the-pam_userdb-modules-plaintext-password-comparison-path-in-modules-pam_userdb-pam_userdb-c-that-al/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-54411-linux-pam-through-1-7-2-contains-an-observable-timing-discrepancy-cwe-208-in-the-pam_userdb-modules-plaintext-password-comparison-path-in-modules-pam_userdb-pam_userdb-c-that-al/]]></link>
			<title>CVE-2026-54411 Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module&#039;s plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeatedly drive authentication through a calling service to recover the plaintext password of a target account by measuring response-timing differences. The comparison uses strncmp() (or strncasecmp() when PAM_ICASE_ARG is set) preceded by a length-equality check, so the time to reject a candidate depends on the index of the first differing byte and on whether the candidate&#039;s length matches the stored password, leaking the password length and individual prefix bytes. The vulnerable path is reached when the administrator configures pam_userdb with crypt=none, with an unrecognized crypt method, or without a crypt= argument, causing the module to store and compare credentials in plaintext.</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 13:01:29 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11700-use-after-free-in-tracing/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11700-use-after-free-in-tracing/]]></link>
			<title>Chromium: CVE-2026-11700 Use after free in Tracing</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:15:07 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11699-use-after-free-in-bluetooth/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11699-use-after-free-in-bluetooth/]]></link>
			<title>Chromium: CVE-2026-11699 Use after free in Bluetooth</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:15:06 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11698-use-after-free-in-bluetooth/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11698-use-after-free-in-bluetooth/]]></link>
			<title>Chromium: CVE-2026-11698 Use after free in Bluetooth</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:15:05 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11697-insufficient-validation-of-untrusted-input-in-ui/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11697-insufficient-validation-of-untrusted-input-in-ui/]]></link>
			<title>Chromium: CVE-2026-11697 Insufficient validation of untrusted input in UI</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:15:03 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11696-uninitialized-use-in-video/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11696-uninitialized-use-in-video/]]></link>
			<title>Chromium: CVE-2026-11696 Uninitialized Use in Video</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:15:02 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11695-inappropriate-implementation-in-passwords/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11695-inappropriate-implementation-in-passwords/]]></link>
			<title>Chromium: CVE-2026-11695 Inappropriate implementation in Passwords</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:15:01 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11694-use-after-free-in-serviceworker/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11694-use-after-free-in-serviceworker/]]></link>
			<title>Chromium: CVE-2026-11694 Use after free in ServiceWorker</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:59 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11693-inappropriate-implementation-in-plugins/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11693-inappropriate-implementation-in-plugins/]]></link>
			<title>Chromium: CVE-2026-11693 Inappropriate implementation in Plugins</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:58 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11692-use-after-free-in-read-anything/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11692-use-after-free-in-read-anything/]]></link>
			<title>Chromium: CVE-2026-11692 Use after free in Read Anything</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:57 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11691-insufficient-validation-of-untrusted-input-in-new-tab-page/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11691-insufficient-validation-of-untrusted-input-in-new-tab-page/]]></link>
			<title>Chromium: CVE-2026-11691 Insufficient validation of untrusted input in New Tab Page</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:55 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11690-out-of-bounds-read-and-write-in-media/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11690-out-of-bounds-read-and-write-in-media/]]></link>
			<title>Chromium: CVE-2026-11690 Out of bounds read and write in Media</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:54 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11689-insufficient-validation-of-untrusted-input-in-passwords/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11689-insufficient-validation-of-untrusted-input-in-passwords/]]></link>
			<title>Chromium: CVE-2026-11689 Insufficient validation of untrusted input in Passwords</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:53 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11688-object-lifecycle-issue-in-svg/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11688-object-lifecycle-issue-in-svg/]]></link>
			<title>Chromium: CVE-2026-11688 Object lifecycle issue in SVG</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:52 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11687-use-after-free-in-dawn/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11687-use-after-free-in-dawn/]]></link>
			<title>Chromium: CVE-2026-11687 Use after free in Dawn</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:50 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11686-insufficient-validation-of-untrusted-input-in-dawn/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11686-insufficient-validation-of-untrusted-input-in-dawn/]]></link>
			<title>Chromium: CVE-2026-11686 Insufficient validation of untrusted input in Dawn</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:49 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11685-insufficient-data-validation-in-mediacapture/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11685-insufficient-data-validation-in-mediacapture/]]></link>
			<title>Chromium: CVE-2026-11685 Insufficient data validation in MediaCapture</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:48 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11684-insufficient-policy-enforcement-in-network/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11684-insufficient-policy-enforcement-in-network/]]></link>
			<title>Chromium: CVE-2026-11684 Insufficient policy enforcement in Network</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:46 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11683-use-after-free-in-webcodecs/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/chromium-cve-2026-11683-use-after-free-in-webcodecs/]]></link>
			<title>Chromium: CVE-2026-11683 Use after free in WebCodecs</title>
			<pubDate><![CDATA[Tue, 16 Jun 2026 07:14:45 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-21717-a-flaw-in-v8s-string-hashing-mechanism-causes-integer-like-strings-to-be-hashed-to-their-numeric-value-making-hash-collisions-trivially-predictable-by-crafting-a-request-that-ca/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-21717-a-flaw-in-v8s-string-hashing-mechanism-causes-integer-like-strings-to-be-hashed-to-their-numeric-value-making-hash-collisions-trivially-predictable-by-crafting-a-request-that-ca/]]></link>
			<title>CVE-2026-21717 A flaw in V8&#039;s string hashing mechanism causes integer-like strings to be hashed to their numeric value, making hash collisions trivially predictable. By crafting a request that causes many such collisions in V8&#039;s internal string table, an attacker can significantly degrade performance of the Node.js process.

The most common trigger is any endpoint that calls `JSON.parse()` on attacker-controlled input, as JSON parsing automatically internalizes short strings into the affected hash table.

This vulnerability affects **20.x, 22.x, 24.x, and 25.x**.</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:41:41 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/type-confusion-in-v8-in-google-chrome-prior-to-142-0-7444-59-allowed-a-remote-attacker-to-potentially-exploit-heap-corruption-via-a-crafted-html-page-chromium-security-severity-high/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/type-confusion-in-v8-in-google-chrome-prior-to-142-0-7444-59-allowed-a-remote-attacker-to-potentially-exploit-heap-corruption-via-a-crafted-html-page-chromium-security-severity-high/]]></link>
			<title>Type Confusion in V8 in Google Chrome prior to 142.0.7444.59 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:41:09 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2025-23167-a-flaw-in-node-js-20s-http-parser-allows-improper-termination-of-http-1-headers-using-rnrx-instead-of-the-required-rnrn-this-inconsistency-enables-request-smuggling-a/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2025-23167-a-flaw-in-node-js-20s-http-parser-allows-improper-termination-of-http-1-headers-using-rnrx-instead-of-the-required-rnrn-this-inconsistency-enables-request-smuggling-a/]]></link>
			<title>CVE-2025-23167 A flaw in Node.js 20&#039;s HTTP parser allows improper termination of HTTP/1 headers using `rnrX` instead of the required `rnrn`.
This inconsistency enables request smuggling, allowing attackers to bypass proxy-based access controls and submit unauthorized requests.

The issue was resolved by upgrading `llhttp` to version 9, which enforces correct header termination.

Impact:
* This vulnerability affects only Node.js 20.x users prior to the `llhttp` v9 upgrade.</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:40:30 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/transforming-online-retail-through-cloud-order-management-systems/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/transforming-online-retail-through-cloud-order-management-systems/]]></link>
			<title>Transforming online retail through cloud order management systems</title>
			<pubDate><![CDATA[Mon, 01 Jun 2026 14:48:32 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-39829-invoking-pathological-rsa-dsa-parameters-may-cause-dos-in-golang-org-x-crypto-ssh/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-39829-invoking-pathological-rsa-dsa-parameters-may-cause-dos-in-golang-org-x-crypto-ssh/]]></link>
			<title>CVE-2026-39829 Invoking  pathological RSA/DSA parameters may cause DoS in golang.org/x/crypto/ssh</title>
			<pubDate><![CDATA[Mon, 01 Jun 2026 13:42:15 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-39821-invoking-failure-to-reject-ascii-only-punycode-encoded-labels-in-golang-org-x-net-idna/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-39821-invoking-failure-to-reject-ascii-only-punycode-encoded-labels-in-golang-org-x-net-idna/]]></link>
			<title>CVE-2026-39821 Invoking failure to reject ASCII-only Punycode-encoded labels in golang.org/x/net/idna</title>
			<pubDate><![CDATA[Mon, 01 Jun 2026 13:42:03 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-39835-invoking-server-panic-during-checkhostkey-authenticate-in-golang-org-x-crypto-ssh/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-39835-invoking-server-panic-during-checkhostkey-authenticate-in-golang-org-x-crypto-ssh/]]></link>
			<title>CVE-2026-39835 Invoking  server panic during CheckHostKey/Authenticate in golang.org/x/crypto/ssh</title>
			<pubDate><![CDATA[Mon, 01 Jun 2026 13:41:51 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2024-36137-a-vulnerability-has-been-identified-in-node-js-affecting-users-of-the-experimental-permission-model-when-the-allow-fs-write-flag-is-used-node-js-permission-model-do-not-operate-o/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2024-36137-a-vulnerability-has-been-identified-in-node-js-affecting-users-of-the-experimental-permission-model-when-the-allow-fs-write-flag-is-used-node-js-permission-model-do-not-operate-o/]]></link>
			<title>CVE-2024-36137 A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the &#8211;allow-fs-write flag is used.

Node.js Permission Model do not operate on file descriptors, however, operations such as fs.fchown or fs.fchmod can use a &quot;read-only&quot; file descriptor to change the owner and permissions of a file.</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:40:05 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2024-22018-a-vulnerability-has-been-identified-in-node-js-affecting-users-of-the-experimental-permission-model-when-the-allow-fs-read-flag-is-used-this-flaw-arises-from-an-inadequate-permissio/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2024-22018-a-vulnerability-has-been-identified-in-node-js-affecting-users-of-the-experimental-permission-model-when-the-allow-fs-read-flag-is-used-this-flaw-arises-from-an-inadequate-permissio/]]></link>
			<title>CVE-2024-22018 A vulnerability has been identified in Node.js, affecting users of the experimental permission model when the &#8211;allow-fs-read flag is used.
This flaw arises from an inadequate permission model that fails to restrict file stats through the fs.lstat API. As a result, malicious actors can retrieve stats from files that they do not have explicit read access to.
This vulnerability affects all users using the experimental permission model in Node.js 20 and Node.js 21.
Please note that at the time this CVE was issued, the permission model is an experimental feature of Node.js.</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:39:56 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-40034-gitoxide-command-injection-via-partial-gitmodules-override-in-gix-submodule/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-40034-gitoxide-command-injection-via-partial-gitmodules-override-in-gix-submodule/]]></link>
			<title>CVE-2026-40034 gitoxide &#8211; Command Injection via Partial .gitmodules Override in gix-submodule</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:04:52 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-44839-rabbitmq-unsanitized-vhost-names-allow-for-xss-in-management-ui/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-44839-rabbitmq-unsanitized-vhost-names-allow-for-xss-in-management-ui/]]></link>
			<title>CVE-2026-44839 RabbitMQ: Unsanitized vhost names allow for XSS in management UI</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:04:44 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2025-15649-iouncompressunzip-versions-before-2-215-for-perl-propagate-uncaught-exception-when-parsing-zip-header-with-malformed-dos-date/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2025-15649-iouncompressunzip-versions-before-2-215-for-perl-propagate-uncaught-exception-when-parsing-zip-header-with-malformed-dos-date/]]></link>
			<title>CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:04:39 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-48962-iocompress-versions-before-2-220-for-perl-can-execute-arbitrary-code-in-fileglobmapper-via-an-attacker-controlled-output-glob/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-48962-iocompress-versions-before-2-220-for-perl-can-execute-arbitrary-code-in-fileglobmapper-via-an-attacker-controlled-output-glob/]]></link>
			<title>CVE-2026-48962 IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:04:34 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-28387-potential-use-after-free-in-dane-client-code/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-28387-potential-use-after-free-in-dane-client-code/]]></link>
			<title>CVE-2026-28387 Potential Use-after-free in DANE Client Code</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:04:27 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-28388-null-pointer-dereference-when-processing-a-delta-crl/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-28388-null-pointer-dereference-when-processing-a-delta-crl/]]></link>
			<title>CVE-2026-28388 NULL Pointer Dereference When Processing a Delta CRL</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:04:12 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-34874-an-issue-was-discovered-in-mbed-tls-through-3-6-5-and-4-x-through-4-0-0-there-is-a-null-pointer-dereference-in-distinguished-name-parsing-that-allows-an-attacker-to-write-to-address-0/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-34874-an-issue-was-discovered-in-mbed-tls-through-3-6-5-and-4-x-through-4-0-0-there-is-a-null-pointer-dereference-in-distinguished-name-parsing-that-allows-an-attacker-to-write-to-address-0/]]></link>
			<title>CVE-2026-34874 An issue was discovered in Mbed TLS through 3.6.5 and 4.x through 4.0.0. There is a NULL pointer dereference in distinguished name parsing that allows an attacker to write to address 0.</title>
			<pubDate><![CDATA[Sun, 31 May 2026 13:04:01 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-41054-missing-exit-out-of-permission-check-in-haveged-could-lead-to-root-exploit/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/msrc-blog-alerts/cve-2026-41054-missing-exit-out-of-permission-check-in-haveged-could-lead-to-root-exploit/]]></link>
			<title>CVE-2026-41054 Missing exit out of permission check in haveged could lead to root exploit</title>
			<pubDate><![CDATA[Sun, 24 May 2026 13:42:19 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/keep-your-mac-safe-from-modern-ransomware-threats/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/keep-your-mac-safe-from-modern-ransomware-threats/]]></link>
			<title>Keep your Mac safe from modern ransomware threats</title>
			<pubDate><![CDATA[Mon, 25 May 2026 01:54:04 +0000]]></pubDate>
		</item>
					<item>
			<guid><![CDATA[https://www.netservicesgroup.com/blog/how-mtd-boosts-android-devices-security/]]></guid>
			<link><![CDATA[https://www.netservicesgroup.com/blog/how-mtd-boosts-android-devices-security/]]></link>
			<title>How MTD boosts Android devices&#8217; security</title>
			<pubDate><![CDATA[Mon, 25 May 2026 01:49:30 +0000]]></pubDate>
		</item>
				</channel>
</rss>
