Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2271 articles · 131214 vulns · 38/41 feeds (7d)
323
+10 today
Exploited (7d)
154
+12 today
Critical (7d)
1591
CISA KEV
43
Pre-CVE
2271
+160 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

9.8
cpanel · CVE-2026-41940 — WebPros cPanel and WHM Authentication Bypass via Login FlowKEVEXPLOITEDPATCHED
cpanel· CVSS 9.8· CWE-306
156🔥
13 art.
0
Apr 29, 2026
7.8
linux · CVE-2026-31431 — crypto: algif_aead - Revert to operating out-of-placeKEVEXPLOITED
PATCHED
linux_kernel· CVSS 7.8· CWE-20
154🔥
43 art.
0
Apr 22, 2026
4.3
microsoft · CVE-2026-32202 — Windows Shell Spoofing VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 4.3· CWE-693
120🔥
9 art.
0
Apr 14, 2026
8.8
microsoft · CVE-2026-21513 — MSHTML Framework Security Feature Bypass VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 8.8· CWE-693
116🔥
4 art.
0
Feb 10, 2026
4.3
microsoft · CVE-2026-21510 — Windows Shell Security Feature Bypass VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 4.3· CWE-693
115🔥
5 art.
0
Feb 10, 2026
8.6
adobe · CVE-2026-34621 — Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') (CWE-1321)KEVEXPLOITEDPATCHED
acrobat_dc· CVSS 8.6· CWE-1321
92
19 art.
0
Apr 11, 2026
9.8
progress · CVE-2026-4670 — Improper Authentication vulnerability in Progress MOVEit AutomationEXPLOITEDPATCHED
moveit automation· CVSS 9.8· CWE-305
80
3 art.
0
Apr 30, 2026
—
bitwarden · CVE-2026-42994 — CVE-2026-42994: Bitwarden CLI 2026.4.0 from 2026-04-22T21:57Z to 2026-04-22T23:30Z, when obtained from npm, had embedded malicious code.EXPLOITED
bitwarden cli· CWE-78
68
2 art.
0
May 1, 2026
7.5
google · CVE-2026-33813 — Panic when decoding large WEBP image on 32-bit platforms in golang.org/x/imageEXPLOITEDPATCHED
webp· CVSS 7.5
68
2 art.
0
Apr 21, 2026
7.7
progress · CVE-2026-5174 — Improper Access Control Vulnerability in Progress MOVEit AutomationEXPLOITEDPATCHED
moveit automation· CVSS 7.7· CWE-20
67
3 art.
0
Apr 30, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
Multiple Vulnerabilities in OPNsense Allow Remote Code Execution and Security Bypass
HIGH1 sources
Multiple Denial of Service Vulnerabilities in Red Hat OpenShift Container Platform
red hatMEDIUM1 sources
Multiple Vulnerabilities in GnuTLS Allow Remote Denial of Service and Information Disclosure
gnutlsMEDIUM1 sources

Latest news

View all
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-44)
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates