Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
729 articles · 106188 vulns · 38/50 feeds (7d)
106188
New CVEs
118
Critical
0
Pre-CVE
1488
CISA KEV
729
Articles
38/50
Feeds

Vulnerabilities

10.0
cisco · CVE-2026-20131 — A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root oKEV
secure_firewall_management_center· CVSS 10.0· CWE-502
81
2 articles
0
Mar 4, 2026
8.8
microsoft · CVE-2026-20963 — Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.KEV
sharepoint_server· CVSS 8.8· CWE-502
71
1 articles
0
Jan 13, 2026
7.2
synacor · CVE-2025-66376 — Zimbra Collaboration (ZCS) 10 before 10.0.18 and 10.1 before 10.1.13 allows Classic UI stored XSS via Cascading Style Sheets (CSS) @import directives in an HTML e-mail message.KEV
zimbra_collaboration_suite· CVSS 7.2· CWE-79
71
1 articles
0
Jan 5, 2026
7.5
cisco · CVE-2026-20128 — A vulnerability in the Data Collection Agent (DCA) feature of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to gain DCA user privileges on an affected system. This vKEV
catalyst_sd-wan_manager· CVSS 7.5· CWE-257
44
1 articles
0
Feb 25, 2026
5.4
cisco · CVE-2026-20122 — A vulnerability in the API of Cisco Catalyst SD-WAN Manager could allow an authenticated, remote attacker to overwrite arbitrary files on the local file system. To exploit this vulnerability, the attaKEV
catalyst_sd-wan_manager· CVSS 5.4· CWE-648
42
1 articles
0
Feb 25, 2026
8.8
google · CVE-2026-4464 — Integer overflow in ANGLE in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
chrome· CVSS 8.8· CWE-472
24
3 articles
0
Mar 20, 2026
8.8
google · CVE-2026-4440 — Out of bounds read and write in WebGL in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: Critical)
chrome· CVSS 8.8· CWE-125
23
2 articles
0
Mar 20, 2026
8.8
google · CVE-2026-4447 — Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: H
chrome· CVSS 8.8
23
2 articles
0
Mar 20, 2026
8.8
google · CVE-2026-4462 — Out of bounds read in Blink in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)
chrome· CVSS 8.8· CWE-125
23
2 articles
0
Mar 20, 2026
8.8
google · CVE-2026-4461 — Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.153 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
chrome· CVSS 8.8
23
2 articles
0
Mar 20, 2026
→ View full list

Urgent

9.8
CVE-2026-33017
langflow langflow
KEV4d ago
9.8
CVE-2026-27542
Wholesale Suite Wholesale Lead Capture Plugin for WooCommerce
KEV5d ago
9.0
CVE-2026-27540
Wholesale Suite Wholesale Lead Capture Plugin for WooCommerce
KEV5d ago
9.0
CVE-2026-3564
ConnectWise ScreenConnect
KEV7d ago
9.1
Scriban: Sandbox escape due to TypedObjectAccessorcache bypassing MemberFilter after TemplateContext reuse
nuget scriban
today
9.0
CVE-2025-33244
NVIDIA Apex
today
8.8
CVE-2026-3910
google chrome
KEV11d ago
8.8
CVE-2026-3909
google chrome
KEV11d ago
9.1
CVE-2026-33340
today
9.8
CVE-2026-0953
themeum Tutor LMS Pro
KEV14d ago
→ View full list

Latest news

No news articles yet.

Pipeline

594
Queued
0
Analyzing
729
Today