Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2930 articles · 161827 vulns · 36/41 feeds (7d)
790
+314 today
Exploited (7d)
310
+101 today
Critical (7d)
1648
CISA KEV
198
Pre-CVE
2930
+1010 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

10.0
cis · CVE-2026-20182 — Cisco Catalyst SD-WAN Controller Authentication Bypass VulnerabilityKEVEXPLOITEDPATCHED
catalyst_sd-wan_manager· CVSS 10.0· CWE-287
164🔥
24 art.
0
May 14, 2026
9.3
checkpoint · CVE-2026-50751 — User Authentication Bypass in VPN Remote Access and Mobile AccessKEVEXPLOITED
PATCHED
quantum security gateway· CVSS 9.3· CWE-287
162🔥
13 art.
0
Jun 8, 2026
7.2
ivanti · CVE-2026-6973 — CVE-2026-6973: A configuration control vulnerability in the Ivanti Endpoint Manager Mobile before 12.9.0.1, 12.8.0.3 and 12.7.0.2 versiKEVEXPLOITEDPATCHED
endpoint_manager_mobile· CVSS 7.2· CWE-15
154🔥
13 art.
0
May 7, 2026
7.8
linux · CVE-2026-31431 — crypto: algif_aead - Revert to operating out-of-placeKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.8
152🔥
83 art.
0
Apr 22, 2026
9.8
coreweave · CVE-2026-39987 — marimo Affected by Pre-Auth Remote Code Execution via Terminal WebSocket Authentication BypassKEVEXPLOITEDPATCHED
marimo· CVSS 9.8· CWE-306
151🔥
9 art.
0
Apr 8, 2026
7.9
linux · CVE-2026-43284 — xfrm: esp: avoid in-place decrypt on shared skb fragsKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.9· CWE-20
149🔥
38 art.
0
May 8, 2026
8.1
f5 · CVE-2026-42945 — NGINX ngx_http_rewrite_module vulnerabilityKEVEXPLOITEDPATCHED
nginx· CVSS 8.1· CWE-122
147🔥
23 art.
0
May 13, 2026
8.8
google · CVE-2026-5281 — CVE-2026-5281: Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderKEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-416
145🔥
18 art.
0
Apr 1, 2026
7.9
linux · CVE-2026-43500 — rxrpc: Also unshare DATA/RESPONSE packets when paged frags are presentKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.9· CWE-20
138🔥
27 art.
0
May 11, 2026
8.8
litellm · CVE-2026-42271 — LiteLLM: Authenticated command execution via MCP stdio test endpointsKEVEXPLOITEDPATCHED
litellm· CVSS 8.8· CWE-77
130🔥
4 art.
0
Apr 25, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
Rapid7 Gains Access To Anthropic’s Project Glasswing To Explore Frontier AI For Cybersecurity
2 sources
Critical vulnerabilities in multiple Adobe products including Adobe Experience Manager and Adobe InDesign
adobeCRITICAL2 sources
Multiple vulnerabilities addressed in Microsoft June 2026 monthly rollup
microsoft1 sources

Latest news

View all
[B]microsoft
Security Alert: Microsoft Releases May 2026 Security Updates
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-44)
[B]trend microCVE-2026-34926
Security Alert: Alert Regarding Multiple Vulnerabilities in Trend Micro Products Including TrendAI Apex One
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)