Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
940 articles · 105132 vulns · 38/41 feeds (7d)
105132
New CVEs
141
Critical
0
Pre-CVE
1384
CISA KEV
940
Articles
38/41
Feeds

Vulnerabilities

8.8
microsoft · CVE-2026-21510 — Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.KEVEXPLOITED
windows_10_1607· CVSS 8.8· CWE-693
94
1 articles
0
Feb 10, 2026
5.5
microsoft · CVE-2026-20805 — Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.KEVEXPLOITED
windows_10_1607· CVSS 5.5· CWE-200
90
1 articles
0
Jan 13, 2026
10.0
cis · CVE-2026-20127 — A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, rKEVEXPLOITED
catalyst_sd-wan_manager· CVSS 10.0· CWE-287
82
1 articles
0
Feb 25, 2026
7.8
apple · CVE-2026-20700 — A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memoKEVEXPLOITED
ipados· CVSS 7.8· CWE-119
82
1 articles
0
Feb 11, 2026
8.8
aquasecurity · CVE-2026-33634 — Trivy ecosystem supply chain briefly compromisedKEVEXPLOITED
setup-trivy· CVSS 8.8· CWE-506
75
3 articles
0
Mar 23, 2026
9.8
langflow · CVE-2026-33017 — Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prior to 1.9.0, the POST /api/v1/build_public_tmp/{flow_id}/flow endpoint allows building public flows withouKEVEXPLOITED
langflow· CVSS 9.8· CWE-94
67
4 articles
0
Mar 20, 2026
—
Xen · CVE-2026-31788 — In the Linux kernel, the following vulnerability has been resolved: xen/privcmd: restrict usage in unprivileged domU The Xen privcmd driver allows to issue arbitrary hypercalls from user space proceEXPLOITED
Xen on Linux· CWE-20
52
4 articles
0
Mar 25, 2026
—
Zabbix · CVE-2026-23923 — An unauthenticated attacker can exploit the Frontend 'validate' action to blindly instantiate arbitrary PHP classes. The impact depends on environment setup but appears limited at this time.EXPLOITED
Zabbix· CWE-470
46
2 articles
0
Mar 24, 2026
—
Squid · CVE-2026-33515 — Squid is a caching proxy for the Web. Prior to version 7.5, due to improper input validation, Squid is vulnerable to out of bounds read when handling ICP traffic. This problem allows a remote attackerEXPLOITED
Squid· CWE-125
44
2 articles
0
Mar 26, 2026
—
Zabbix · CVE-2026-23919 — For performance reasons Zabbix Server/Proxy reuses JavaScript (Duktape) contexts (used in script items, JavaScript reprocessing, Webhooks). This can lead to confidentiality loss where a regular (non-sEXPLOITED
Zabbix· CWE-488
40
2 articles
0
Mar 24, 2026
→ View full list

Urgent

23.7
8theme xstore core
CVE-2026-25306
KEV1d ago
20.8
langflow langflow
CVE-2026-33017
KEV7d ago
20.0
n/a n/a
CVE-2026-26830
1d ago
19.5
Xen Xen on Linux
CVE-2026-31788
EXP1d ago
19.3
Cloud Software Group NetScaler ADC and NetScaler Gateway
CVE-2026-3055
EXP
3d ago
19.2
CVE-2026-3584
KEV6d ago
17.4
cis secure_firewall_management_center
CVE-2026-20131
KEV22d ago
17.0
n/a n/a
CVE-2025-59707
1d ago
17.0
n/a n/a
CVE-2025-59706
1d ago
16.3
wholesale suite wholesale lead capture plugin for woocommerce
CVE-2026-27542
KEV7d ago
View full list

Latest news

[JPCERT/CC]Security Alert: Alert Regarding Vulnerabilities in Adobe Acr...
[JPCERT/CC]Security Alert: Alert Regarding Vulnerabilities in Adobe Acr...
[JPCERT/CC]Security Alert: Microsoft Releases December 2025 Security Up...
[JPCERT/CC]Security Alert: Microsoft Releases February 2026 Security Up...
[JPCERT/CC]Security Alert: Microsoft Releases March 2026 Security Updat...
[JPCERT/CC]Security Alert: Microsoft Releases January 2026 Security Upd...
[CSO Online]Was ist Social Engineering?
2h ago
[Help Net Security]Make OpenAI’s models misbehave and earn a reward
5h ago

Pipeline

0
Queued
0
Analyzing
940
Today