<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"
        xmlns:news="http://www.google.com/schemas/sitemap-news/0.9"
        xmlns:image="http://www.google.com/schemas/sitemap-image/1.1">
  <url>
    <loc>https://laautopsia.com/vulnerabilidad/ssrf-searxng-mcp-server-filtro-direcciones-internas-desactivado</loc>
    <image:image>
      <image:loc>https://storage.googleapis.com/autopsia-45ba4.firebasestorage.app/vulnerabilities/GHSA-q87f-qc2r-2gw4/apisdom-autopsia-alertas-a5-2026-08-19.webp</image:loc>
    </image:image>
    <news:news>
      <news:publication>
        <news:name>La AutopsIA</news:name>
        <news:language>es</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T21:13:24.453Z</news:publication_date>
      <news:title>SSRF en SearXNG MCP Server: filtro de direcciones internas desactivado por defecto en web_url_read</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://laautopsia.com/vulnerabilidad/lectura-arbitraria-archivos-locales-grokfafmcp-argumento-path-restriccion</loc>
    <image:image>
      <image:loc>https://storage.googleapis.com/autopsia-45ba4.firebasestorage.app/vulnerabilities/GHSA-cc2g-gq8c-r332/apisdom-autopsia-alertas-a4-2026-08-19.webp</image:loc>
    </image:image>
    <news:news>
      <news:publication>
        <news:name>La AutopsIA</news:name>
        <news:language>es</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T21:08:19.582Z</news:publication_date>
      <news:title>Lectura arbitraria de archivos locales en grok-faf-mcp por argumento path sin restricción</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://laautopsia.com/vulnerabilidad/fafmcp-permite-lectura-escritura-arbitraria-archivos-locales-argumento</loc>
    <image:image>
      <image:loc>https://storage.googleapis.com/autopsia-45ba4.firebasestorage.app/vulnerabilities/GHSA-j4r7-8ph4-43g3/apisdom-autopsia-alertas-a3-2026-08-19.webp</image:loc>
    </image:image>
    <news:news>
      <news:publication>
        <news:name>La AutopsIA</news:name>
        <news:language>es</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T21:03:28.483Z</news:publication_date>
      <news:title>faf-mcp permite lectura y escritura arbitraria de archivos locales por argumento path sin restricción</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://laautopsia.com/vulnerabilidad/lectura-escritura-arbitraria-archivos-locales-claudefafmcp-argumento-path</loc>
    <image:image>
      <image:loc>https://storage.googleapis.com/autopsia-45ba4.firebasestorage.app/vulnerabilities/GHSA-rr55-jp92-8wp2/apisdom-autopsia-alertas-a2-2026-08-19.webp</image:loc>
    </image:image>
    <news:news>
      <news:publication>
        <news:name>La AutopsIA</news:name>
        <news:language>es</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:54:14.117Z</news:publication_date>
      <news:title>Lectura y escritura arbitraria de archivos locales en claude-faf-mcp por argumento path sin restricción</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://laautopsia.com/vulnerabilidad/ssrf-contentful-mcp-server-exportspaceimportspace-exponen-pat-servidor</loc>
    <image:image>
      <image:loc>https://storage.googleapis.com/autopsia-45ba4.firebasestorage.app/vulnerabilities/GHSA-2xhg-73j7-rrgx/apisdom-autopsia-alertas-a1-2026-08-19.webp</image:loc>
    </image:image>
    <news:news>
      <news:publication>
        <news:name>La AutopsIA</news:name>
        <news:language>es</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:48:16.708Z</news:publication_date>
      <news:title>SSRF en Contentful MCP Server: export_space/import_space exponen PAT del servidor a endpoints controlados por atacante</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://laautopsia.com/noticia/modelo-ia-meta-hackeo-servicio-real</loc>
    <image:image>
      <image:loc>https://storage.googleapis.com/autopsia-45ba4.firebasestorage.app/incidents/1649/apisdom-autopsia-noticias-n1-2026-08-19.webp</image:loc>
    </image:image>
    <news:news>
      <news:publication>
        <news:name>La AutopsIA</news:name>
        <news:language>es</news:language>
      </news:publication>
      <news:publication_date>2026-08-19T20:34:16.744Z</news:publication_date>
      <news:title>Un modelo de IA de Meta hackeó un servicio real durante una prueba de ciberseguridad</news:title>
    </news:news>
  </url>
</urlset>