Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2900 articles · 109738 vulns · 38/41 feeds (7d)
690
+99 today
Exploited (7d)
366
+96 today
Critical (7d)
1535
CISA KEV
36
Pre-CVE
2900
+503 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

8.8
google · CVE-2026-5281 — CVE-2026-5281: Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderKEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-416
152🔥
15 art.
0
Apr 1, 2026
9.8
ivanti · CVE-2026-1340 — CVE-2026-1340: A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.KEV
EXPLOITED
PATCHED
endpoint_manager_mobile· CVSS 9.8· CWE-94
127🔥
3 art.
0
Jan 29, 2026
—
marimo · CVE-2026-39987 — marimo Affected by Pre-Auth Remote Code Execution via Terminal WebSocket Authentication BypassKEVEXPLOITEDPATCHED
marimo· CWE-306
125🔥
2 art.
0
Apr 8, 2026
9.1
fortinet · CVE-2026-35616 — CVE-2026-35616: A improper access control vulnerability in Fortinet FortiClientEMS 7.4.5 through 7.4.6 may allow an unauthenticated attaKEVEXPLOITEDPATCHED
forticlientems· CVSS 9.1· CWE-284
115🔥
17 art.
0
Apr 4, 2026
9.8
beyondtrust · CVE-2026-1731 — BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted reqKEVEXPLOITEDPATCHED
privileged_remote_access· CVSS 9.8· CWE-78
101🔥
2 art.
0
Feb 6, 2026
9.8
wp ninjas · CVE-2026-0740 — Ninja Forms - File Upload <= 3.3.26 - Unauthenticated Arbitrary File UploadKEVEXPLOITED
ninja forms - file uploads· CVSS 9.8· CWE-434
99
3 art.
0
Apr 7, 2026
9.8
ivanti · CVE-2026-1281 — A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.KEVEXPLOITEDPATCHED
endpoint_manager_mobile· CVSS 9.8· CWE-94
97
2 art.
0
Jan 29, 2026
9.8
nextendweb · CVE-2026-34424 — Smart Slider 3 Pro 3.5.1.35 Supply Chain Attack Remote Access ToolkitKEVEXPLOITEDPATCHED
smart slider 3 pro for wordpress· CVSS 9.8· CWE-506
96
1 art.
0
Apr 9, 2026
9.8
fortinet · CVE-2026-21643 — An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an unauthenticated attacker to execute unauthorized codKEVEXPLOITEDPATCHED
forticlientems· CVSS 9.8· CWE-89
88
10 art.
0
Feb 6, 2026
7.8
trueconf · CVE-2026-3502 — TrueConf Client Update Integrity Verification BypassKEVEXPLOITED
trueconf· CVSS 7.8· CWE-494
81
7 art.
1
Mar 30, 2026
→ View full list

Pre-CVE Events

View all
Critical vulnerability in Adobe Acrobat Reader allows remote code execution and privilege escalation
adobeCRITICAL1 sources
Denial of Service Vulnerability in NGINX
f5MEDIUM1 sources
TOCTOU Privilege Escalation Issue in libcap
nullHIGH1 sources
What Project Glasswing Means for Security Leaders
2 sources
Multiple vulnerabilities in Juniper Networks products including Junos OS and Apstra
juniper1 sources

Latest news

View all
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]checkmkCVE-2026-33457
[NEU] [mittel] Checkmk: Mehrere Schwachstellen
17m ago
[B]LinuxCVE-2026-31412
[NEU] [mittel] Linux Kernel: Schwachstelle ermöglicht Denial of Service oder Codeausführung
22m ago