<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://s-edv.com/news/cisa-kev-drei-linux-kernel-luecken-lokale-eskalation</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T02:22:01+02:00</news:publication_date>
      <news:title>CISA nimmt drei Linux-Kernel-Lücken in den KEV-Katalog auf</news:title>
      <news:keywords>Linux, Kernel, CISA KEV, CVE, Rechteausweitung, Patchmanagement</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://s-edv.com/news/solarwinds-arm-cve-2026-28326-hardcoded-key-rce</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T02:21:47+02:00</news:publication_date>
      <news:title>SolarWinds ARM: Unauthentifizierte RCE durch fest einprogrammierten Schlüssel</news:title>
      <news:keywords>SolarWinds, Access Rights Manager, CVE-2026-28326, Remote Code Execution, Active Directory, Patchmanagement, Sicherheitsluecke</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://s-edv.com/news/crowdsec-quellcode-leak-offboarding-github-token</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T02:21:44+02:00</news:publication_date>
      <news:title>CrowdSec-Quellcode abgeflossen: offenes GitHub-Konto eines Ausgeschiedenen</news:title>
      <news:keywords>CrowdSec, Supply Chain, GitHub, npm, Offboarding, OAuth-Token, TanStack</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://s-edv.com/news/orkes-conductor-cve-2026-58138-preauth-rce-aktiv-ausgenutzt</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T02:21:42+02:00</news:publication_date>
      <news:title>Orkes Conductor: Kritische Pre-Auth-RCE CVE-2026-58138 wird aktiv ausgenutzt</news:title>
      <news:keywords>CVE-2026-58138, Orkes Conductor, Remote Code Execution, Workflow-Orchestrierung, Sicherheitslücke, FortiGuard</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://s-edv.com/news/microsoft-azure-copilot-18-luecken-september-2026</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T02:16:00+02:00</news:publication_date>
      <news:title>Microsoft schließt 18 Azure- und Copilot-Lücken serverseitig</news:title>
      <news:keywords>Microsoft, Azure, Copilot, Schwachstellen, Cloud-Sicherheit, Patchmanagement, Azure AI Foundry</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://s-edv.com/news/linux-kernel-oeffentliche-exploits-lokale-root-eskalation</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T02:14:28+02:00</news:publication_date>
      <news:title>Linux-Kernel: Öffentliche Exploits für vier Root-Lücken</news:title>
      <news:keywords>Linux, Kernel, Exploit, Rechteausweitung, Patchmanagement, Container</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://s-edv.com/news/wordpress-7-1-1-click2shell-preauth-rce-jetzt-patchen</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T02:14:13+02:00</news:publication_date>
      <news:title>WordPress 7.1.1 schließt Click2Shell: Preauth-RCE über Theme-Vorschau</news:title>
      <news:keywords>WordPress, Sicherheitsupdate, RCE, Click2Shell, Patch-Management, CMS</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://s-edv.com/news/docker-sandboxes-cve-2026-77179-macos-host-dateizugriff</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T02:14:00+02:00</news:publication_date>
      <news:title>Docker Sandboxes: kritische Lücke erlaubt Zugriff auf macOS-Host-Dateien</news:title>
      <news:keywords>Docker, Docker Sandboxes, macOS, Sicherheitslücke, CVE-2026-77179, Container-Sicherheit</news:keywords>
    </news:news>
  </url>
  <url>
    <loc>https://s-edv.com/news/brevo-supply-chain-angriff-clickfix-wordpress-pruefen</loc>
    <news:news>
      <news:publication>
        <news:name>Schönfelder EDV News</news:name>
        <news:language>de</news:language>
      </news:publication>
      <news:publication_date>2026-09-19T02:13:45+02:00</news:publication_date>
      <news:title>Brevo-Lieferkettenangriff: ClickFix-Code auf über 100.000 Websites</news:title>
      <news:keywords>Brevo, Supply-Chain-Angriff, ClickFix, WordPress, Cloudflare, API-Schlüssel</news:keywords>
    </news:news>
  </url>
</urlset>
