<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
  <url>
    <loc>https://vulnerablemcp.info/</loc>
    <lastmod>2026-02-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>1.0</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/stats.html</loc>
    <lastmod>2026-02-16</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/taxonomy.html</loc>
    <lastmod>2026-02-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/report.html</loc>
    <lastmod>2026-02-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/about.html</loc>
    <lastmod>2026-02-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.5</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/security.html</loc>
    <lastmod>2026-02-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/etdi-security.html</loc>
    <lastmod>2026-02-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2026-25536-sdk-cross-client-data-leak.html</loc>
    <lastmod>2026-02-04</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2026-23744-mcpjam-inspector-rce.html</loc>
    <lastmod>2026-02-01</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-68145-anthropic-git-mcp-rce-chain.html</loc>
    <lastmod>2026-01-20</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2026-0756-github-kanban-mcp-rce.html</loc>
    <lastmod>2026-01-20</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/microsoft-markitdown-mcp-ssrf.html</loc>
    <lastmod>2026-01-20</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-66689-zen-mcp-path-traversal.html</loc>
    <lastmod>2026-01-15</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-67366-filesystem-mcp-path-traversal.html</loc>
    <lastmod>2026-01-15</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2026-0755-gemini-mcp-command-injection.html</loc>
    <lastmod>2026-01-09</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-65513-fetch-mcp-ssrf.html</loc>
    <lastmod>2025-12-09</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/mcp-sampling-exploitation.html</loc>
    <lastmod>2025-12-05</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/mcp-registry-hijacking.html</loc>
    <lastmod>2025-10-18</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/kluster-verify-mcp-credit-exhaustion.html</loc>
    <lastmod>2025-10-16</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-59944-cursor-case-sensitivity-bypass.html</loc>
    <lastmod>2025-10-10</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-59163-vet-mcp-dns-rebinding.html</loc>
    <lastmod>2025-10-06</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/amp-ai-agent-api-key-exfiltration.html</loc>
    <lastmod>2025-10-03</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/kilo-code-supply-chain-attack.html</loc>
    <lastmod>2025-10-02</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-53967-figma-mcp-rce.html</loc>
    <lastmod>2025-10-01</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/tra-2025-36-microsoft-learn-mcp-ssrf.html</loc>
    <lastmod>2025-09-19</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/coder-agent-api-chat-history-exposure.html</loc>
    <lastmod>2025-09-19</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/neo4j-mcp-dns-rebinding-database-takeover.html</loc>
    <lastmod>2025-09-11</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/zero-click-rce-google-docs-mcp.html</loc>
    <lastmod>2025-09-05</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/thirdweb-mcp-unauthorized-crypto.html</loc>
    <lastmod>2025-09-03</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/grafana-mcp-unauthenticated-sse.html</loc>
    <lastmod>2025-09-02</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cursor-jira-mcp-zero-click.html</loc>
    <lastmod>2025-08-20</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-54136-cursor-mcpoison.html</loc>
    <lastmod>2025-08-01</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cursor-browser-injection-rogue-mcp.html</loc>
    <lastmod>2025-07-22</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cyberark-universal-output-poisoning.html</loc>
    <lastmod>2025-07-18</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-66414-66416-dns-rebinding-mcp-sdks.html</loc>
    <lastmod>2025-07-10</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-6514-mcp-remote-rce.html</loc>
    <lastmod>2025-07-09</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-53355-k8s-mcp-command-injection.html</loc>
    <lastmod>2025-07-08</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-53372-sandbox-escape-mcp.html</loc>
    <lastmod>2025-07-08</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/heroku-mcp-exploit.html</loc>
    <lastmod>2025-06-30</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cve-2025-54994-command-injection-mcp-stdio.html</loc>
    <lastmod>2025-06-20</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/mcp-inspector-rce-cve-2025-49596.html</loc>
    <lastmod>2025-06-13</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/github-mcp-exploit.html</loc>
    <lastmod>2025-05-26</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/tool-function-parameter-abuse.html</loc>
    <lastmod>2025-05-15</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/insecure-credential-storage.html</loc>
    <lastmod>2025-04-30</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/ansi-terminal-code-deception.html</loc>
    <lastmod>2025-04-29</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/conversation-history-theft.html</loc>
    <lastmod>2025-04-23</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/line-jumping-attack.html</loc>
    <lastmod>2025-04-21</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/tool-poisoning-rce-rug-pull.html</loc>
    <lastmod>2025-04-17</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/malicious-local-servers.html</loc>
    <lastmod>2025-04-13</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/rug-pulls-silent-redefinition.html</loc>
    <lastmod>2025-04-09</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/cross-server-tool-shadowing.html</loc>
    <lastmod>2025-04-09</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/whatsapp-message-exfiltration.html</loc>
    <lastmod>2025-04-07</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/mcp-safety-audit-systematic-analysis.html</loc>
    <lastmod>2025-04-02</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/tool-poisoning-attacks.html</loc>
    <lastmod>2025-04-01</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/consent-fatigue-attacks.html</loc>
    <lastmod>2025-04-01</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/tool-name-collisions.html</loc>
    <lastmod>2025-04-01</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://vulnerablemcp.info/vuln/session-ids-exposed-in-urls.html</loc>
    <lastmod>2025-03-29</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
</urlset>
