<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/xsl" href="//www.dexpose.io/video-sitemap.xsl"?>
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd http://www.google.com/schemas/sitemap-video/1.1 http://www.google.com/schemas/sitemap-video/1.1/sitemap-video.xsd" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:video="http://www.google.com/schemas/sitemap-video/1.1">
	<url>
		<loc>https://www.dexpose.io/n8n-from-parsing-bug-to-remote-code-execution-aka-cve-2026-42231/</loc>
		<video:video>
			<video:title><![CDATA[n8n: From Parsing Bug to Remote Code Execution aka CVE-2026-42231 - DeXpose]]></video:title>
			<video:description><![CDATA[n8n is an open-source node-based workflow automation tool that allows you to connect applications, databases, and AI agents to automate tasks. In this post, we walk through a vulnerability chain that starts with a subtle semantic quirk in xml2js, a widely used XML parsing library for Node.js, and ends with unauthenticated remote code execution on the host. The root cause is a prototype pollution primitive, a class of bug often dismissed as low-severity. This research shows that, given the right gadget chain, even a highly constrained primitive can reach full shell access.]]></video:description>
			<video:thumbnail_loc>https://www.dexpose.io/wp-content/uploads/2026/04/994860a3-3a91-4f87-9f89-521f1dd7d81a.jpeg</video:thumbnail_loc>
			<video:content_loc>https://dexpose-wpadmin-home.teleport.dexpose.io/wp-content/uploads/2026/04/Final-PoC.mp4</video:content_loc>
			<video:family_friendly>yes</video:family_friendly>
			<video:uploader info="https://www.dexpose.io/author/a-tallat/">a.tallat</video:uploader>
		</video:video>
	</url>
	<url>
		<loc>https://www.dexpose.io/flesh-stealer-a-report-on-multivector-data-theft/</loc>
		<video:video>
			<video:title><![CDATA[FleshStealer Malware Report – Multivector Data Theft]]></video:title>
			<video:description><![CDATA[FleshStealer is a modular .NET malware that steals credentials, files, and tokens from Windows systems using stealthy, multivector data exfiltration methods.]]></video:description>
			<video:thumbnail_loc>https://www.dexpose.io/wp-content/uploads/2025/07/Flesh-Stealer-A-Report-on-Multivector-Data-Theft-1.jpg</video:thumbnail_loc>
			<video:content_loc>https://dexpose.io/wp-content/uploads/2025/07/Flesh1.mp4</video:content_loc>
			<video:tag><![CDATA[FleshStealer Malware]]></video:tag>
			<video:family_friendly>yes</video:family_friendly>
			<video:uploader info="https://www.dexpose.io/author/admin/">admin</video:uploader>
		</video:video>
	</url>
</urlset>
<!-- XML Sitemap generated by Rank Math SEO Plugin (c) Rank Math - rankmath.com -->