Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2303 articles · 112780 vulns · 36/41 feeds (7d)
394
+94 today
Exploited (7d)
129
+44 today
Critical (7d)
1576
CISA KEV
23
Pre-CVE
2303
+727 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

7.8
microsoft · CVE-2026-33825 — Microsoft Defender Elevation of Privilege VulnerabilityKEVEXPLOITEDPATCHED
defender_antimalware_platform· CVSS 7.8· CWE-1220
153🔥
13 art.
0
Apr 14, 2026
6.5
microsoft · CVE-2026-32201 — Microsoft SharePoint Server Spoofing VulnerabilityKEVEXPLOITED
PATCHED
sharepoint_server· CVSS 6.5· CWE-20
146🔥
17 art.
0
Apr 14, 2026
8.8
apache · CVE-2026-34197 — Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeansKEVEXPLOITEDPATCHED
activemq· CVSS 8.8· CWE-20
136🔥
16 art.
0
Apr 7, 2026
7.5
cis · CVE-2026-20128 — Cisco Catalyst SD-WAN Manager Information Disclosure VulnerabilityKEVEXPLOITEDPATCHED
catalyst_sd-wan_manager· CVSS 7.5· CWE-257
134🔥
5 art.
0
Feb 25, 2026
5.4
cis · CVE-2026-20122 — Cisco Catalyst SD-WAN Manager Arbitrary File Overwrite VulnerabilityKEVEXPLOITEDPATCHED
catalyst_sd-wan_manager· CVSS 5.4· CWE-648
130🔥
5 art.
0
Feb 25, 2026
6.5
cis · CVE-2026-20133 — CVE-2026-20133: A vulnerability in Cisco Catalyst SD-WAN Software could allow an unauthenticated, remote attacker to view sensitive infoKEVEXPLOITEDPATCHED
catalyst_sd-wan_manager· CVSS 6.5· CWE-200
129🔥
6 art.
0
Feb 25, 2026
7.5
lmdeploy · CVE-2026-33626 — LMDeploy Vulnerable to Server-Side Request Forgery (SSRF) via Vision-Language Image LoadingKEVEXPLOITEDPATCHED
lmdeploy· CVSS 7.5· CWE-918
118🔥
2 art.
0
Apr 20, 2026
9.8
nginxui · CVE-2026-33032 — Nginx UI: Unauthenticated MCP Endpoint Allows Remote Nginx TakeoverKEVEXPLOITEDPATCHED
nginx_ui· CVSS 9.8· CWE-306
112🔥
10 art.
0
Mar 30, 2026
8.6
adobe · CVE-2026-34621 — Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') (CWE-1321)KEVEXPLOITEDPATCHED
acrobat_dc· CVSS 8.6· CWE-1321
105🔥
17 art.
0
Apr 11, 2026
9.1
microsoft · CVE-2026-40372 — ASP.NET Core Elevation of Privilege VulnerabilityEXPLOITEDPATCHED
asp.net core· CVSS 9.1· CWE-347
103🔥
10 art.
0
Apr 21, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
Multiple vulnerabilities addressed in Oracle April 2026 Critical Patch Update
oracleCRITICAL1 sources
OS Command Injection in netrw affects Vim < 9.2.0383
vimMEDIUM1 sources
Multiple vulnerabilities in Phoenix Contact products due to OpenSSL issues
phoenix contact1 sources

Latest news

View all
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-44)
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates