Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1605 articles · 105598 vulns · 38/41 feeds (7d)
105598
New CVEs
219
Critical
0
Pre-CVE
1384
CISA KEV
1605
Articles
38/41
Feeds

Vulnerabilities

9.3
langflow · CVE-2026-33017 — Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prior to 1.9.0, the POST /api/v1/build_public_tmp/{flow_id}/flow endpoint allows building public flows withouKEVEXPLOITED
langflow· CVSS 9.3· CWE-94
105🔥
6 articles
0
Mar 20, 2026
8.8
aquasec · CVE-2026-33634 — Trivy ecosystem supply chain briefly compromisedKEVEXPLOITED
setup-trivy· CVSS 8.8· CWE-506
96
1 articles
0
Mar 23, 2026
9.8
gnu · CVE-2026-24061 — telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.KEVEXPLOITED
inetutils· CVSS 9.8· CWE-88
86
1 articles
0
Jan 21, 2026
8.8
microsoft · CVE-2026-21510 — Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.KEVEXPLOITED
windows_10_1607· CVSS 8.8· CWE-693
83
1 articles
0
Feb 10, 2026
5.5
microsoft · CVE-2026-20805 — Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.KEVEXPLOITED
windows_10_1607· CVSS 5.5· CWE-200
79
1 articles
0
Jan 13, 2026
10.0
oracle · CVE-2026-21962 — Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server ProxKEVEXPLOITED
http_server· CVSS 10.0· CWE-284
78
1 articles
0
Jan 20, 2026
9.3
Cloud Software Group · CVE-2026-3055 — Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overreadEXPLOITED
NetScaler ADC and NetScaler Gateway· CVSS 9.3· CWE-125
76
7 articles
0
Mar 23, 2026
10.0
cisco · CVE-2026-20131 — A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root&nKEVEXPLOITED
secure_firewall_management_center· CVSS 10.0· CWE-502
75
3 articles
0
Mar 4, 2026
7.8
apple · CVE-2026-20700 — A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memoKEVEXPLOITED
ipados· CVSS 7.8· CWE-119
67
1 articles
0
Feb 11, 2026
10.0
n/a · CVE-2026-30302 — CVE-2026-30302: The command auto-approval module in CodeRider-Kilo contains an OS Command Injection vulnerability, rendering its whiteliEXPLOITED
n/a· CVSS 10.0
66
1 articles
0
Mar 27, 2026
→ View full list

Urgent

26.3
aquasec setup-trivy
CVE-2026-33634
KEV4d ago
25.9
wazuh wazuh-manager
CVE-2025-15615
EXPtoday
25.1
n/a n/a
CVE-2026-30532
EXP1d ago
25.1
n/a n/a
CVE-2026-30530
EXP1d ago
25.1
n/a n/a
CVE-2026-30303
EXP
1d ago
25.1
n/a n/a
CVE-2026-30302
EXP1d ago
25.1
n/a n/a
CVE-2026-30533
EXP1d ago
24.9
n/a n/a
CVE-2026-30458
EXP1d ago
24.4
spring spring ai
CVE-2026-22738
EXP1d ago
22.9
appsmith appsmith
CVE-2026-34411
EXPtoday
View full list

Latest news

[JPCERT/CC]Security Alert: Microsoft Releases March 2026 Security Updat...
[JPCERT/CC]Security Alert: Microsoft Releases January 2026 Security Upd...
[JPCERT/CC]Security Alert: Microsoft Releases February 2026 Security Up...
[JPCERT/CC]Security Alert: Alert Regarding Vulnerabilities in Adobe Acr...
[JPCERT/CC]Security Alert: Alert Regarding Vulnerabilities in Adobe Acr...
[JPCERT/CC]Security Alert: Microsoft Releases December 2025 Security Up...
[VulDB]CVE-2026-23399 | Linux Kernel up to 6.12.77/6.18.19/6.19.9/7...
2h ago
[VulDB]CVE-2026-1307 | kstover Ninja Forms Plugin up to 3.14.1 on W...
2h ago

Pipeline

0
Queued
0
Analyzing
433
Today