<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>OneMore Blog</title><description>Security analysis, vulnerability research, and focused write-ups from ye0n.kr.</description><link>https://ye0n.kr/</link><item><title>Unauthenticated RCE via VM Sandbox Escape in playwright-mcp (browser_run_code)</title><link>https://ye0n.kr/security/playwright-mcp-rce-vm-sandbox-escape/</link><guid isPermaLink="true">https://ye0n.kr/security/playwright-mcp-rce-vm-sandbox-escape/</guid><description>Microsoft playwright-mcp 서버의 browser_run_code 도구에서 발견된 Node.js VM 샌드박스 탈출을 통한 비인증 원격 코드 실행(RCE) 취약점 분석 및 PoC 보고서입니다.</description><pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2025-69902: OS Command Injection in kubectl-mcp-tool</title><link>https://ye0n.kr/security/cve-2025-69902-kubectl-mcp-tool-command-injection/</link><guid isPermaLink="true">https://ye0n.kr/security/cve-2025-69902-kubectl-mcp-tool-command-injection/</guid><description>kubectl-mcp-tool의 minimal_wrapper.py에서 발견된 OS Command Injection 취약점(CVE-2025-69902) 분석 및 PoC 보고서입니다.</description><pubDate>Mon, 16 Mar 2026 00:00:00 GMT</pubDate></item><item><title>첫 포스팅 입니다.</title><link>https://ye0n.kr/intro/first-post/</link><guid isPermaLink="true">https://ye0n.kr/intro/first-post/</guid><description>OneMore Blog의 첫 글로, 배운 내용을 꾸준히 기록해 나가겠다는 짧은 소개 글입니다.</description><pubDate>Sun, 26 Jun 2022 15:00:00 GMT</pubDate></item></channel></rss>