Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2522 articles · 132033 vulns · 36/41 feeds (7d)
351
+41 today
Exploited (7d)
237
+79 today
Critical (7d)
1594
CISA KEV
63
Pre-CVE
2522
+626 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

7.8
linux · CVE-2026-31431 — crypto: algif_aead - Revert to operating out-of-placeKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.8
147🔥
51 art.
0
Apr 22, 2026
9.8
cpanel · CVE-2026-41940 — WebPros cPanel and WHM Authentication Bypass via Login FlowKEVEXPLOITEDPATCHED
cpanel· CVSS 9.8· CWE-306
141🔥
17 art.
0
Apr 29, 2026
9.8
breeze · CVE-2026-3844 — Breeze Cache <= 2.4.4 - Unauthenticated Arbitrary File Upload via fetch_gravatar_from_remoteKEVEXPLOITED
breeze cache· CVSS 9.8· CWE-434
128🔥
3 art.
0
Apr 23, 2026
9.8
weaver · CVE-2026-22679 — Weaver E-cology 10.0 Unauthenticated RCE via dubboApi Debug EndpointKEVEXPLOITEDPATCHED
e-cology· CVSS 9.8· CWE-306
109🔥
3 art.
0
Apr 7, 2026
4.3
microsoft · CVE-2026-32202 — Windows Shell Spoofing VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 4.3· CWE-693
89
9 art.
0
Apr 14, 2026
8.8
microsoft · CVE-2026-21513 — MSHTML Framework Security Feature Bypass VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 8.8· CWE-693
85
4 art.
0
Feb 10, 2026
4.3
microsoft · CVE-2026-21510 — Windows Shell Security Feature Bypass VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 4.3· CWE-693
85
5 art.
0
Feb 10, 2026
9.8
progress · CVE-2026-4670 — Improper Authentication vulnerability in Progress MOVEit AutomationEXPLOITEDPATCHED
moveit_automation· CVSS 9.8· CWE-305
84
8 art.
0
Apr 30, 2026
8.8
apache · CVE-2026-23918 — Apache HTTP Server: http2: double free and possible RCE on early resetEXPLOITEDPATCHED
http_server· CVSS 8.8· CWE-415
81
7 art.
0
May 4, 2026
5.3
apache · CVE-2026-34032 — Apache HTTP Server: mod_proxy_ajp: Heap Buffer Over-Read Due to Missing Null-Termination Check (ajp_msg_get_string)EXPLOITEDPATCHED
http_server· CVSS 5.3· CWE-170
79
6 art.
0
May 4, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
Multiple Vulnerabilities in Apache Wicket Allow Security Bypass, XSS, Information Disclosure, and Data Manipulation
the apache software foundationHIGH1 sources
Rowhammer Attack Against NVIDIA Chips
nvidiaCRITICAL1 sources
Multiple Vulnerabilities in Netty Allow Security Bypass, Data Manipulation, Information Disclosure, and Denial of Service
netty projectMEDIUM1 sources

Latest news

View all
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-44)
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates