Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2060 articles · 104270 vulns · 38/41 feeds (7d)
289
+28 today
Exploited (7d)
284
Critical (7d)
1526
CISA KEV
3
Pre-CVE
2060
+141 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

8.8
google · CVE-2026-5281 — CVE-2026-5281: Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderKEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-416
152🔥
11 art.
0
Apr 1, 2026
7.8
trueconf · CVE-2026-3502 — TrueConf Client Update Integrity Verification BypassKEVEXPLOITED
trueconf· CVSS 7.8· CWE-494
140🔥
6 art.
1
Mar 30, 2026
9.1
fortinet · CVE-2026-35616 — CVE-2026-35616: A improper access control vulnerability in Fortinet FortiClientEMS 7.4.5 through 7.4.6 may allow an unauthenticated attaKEVEXPLOITEDPATCHED
forticlientems· CVSS 9.1· CWE-284
140🔥
9 art.
0
Apr 4, 2026
8.8
google · CVE-2026-3909 — Out of bounds write in Skia in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)KEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-787
91
4 art.
0
Mar 13, 2026
8.8
google · CVE-2026-3910 — Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: HiKEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-94
91
4 art.
0
Mar 13, 2026
9.8
citrix · CVE-2026-3055 — Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overreadKEVEXPLOITEDPATCHED
netscaler_application_delivery_controller· CVSS 9.8· CWE-125
79
8 art.
0
Mar 23, 2026
9.8
cis · CVE-2026-20093 — Cisco Integrated Management Controller Authentication Bypass Vulnerability
integrated management controller (imc)· CVSS 9.8· CWE-20
76
9 art.
0
Apr 1, 2026
—
openprinting · CVE-2026-34980 — OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` code execution over the networkEXPLOITED
cups· CWE-20
64
3 art.
0
Apr 3, 2026
7.8
apple · CVE-2026-20700 — A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memoKEVEXPLOITEDPATCHED
ipados· CVSS 7.8· CWE-119
64
2 art.
0
Feb 11, 2026
6.5
openprinting · CVE-2026-34978 — OpenPrinting CUPS: Path traversal in RSS notify-recipient-uri enables file write outside CacheDir/rss (and clobbering of job.cache)EXPLOITED
cups· CVSS 6.5· CWE-22
64
3 art.
0
Apr 3, 2026
→ View full list

Pre-CVE Events

View all
Inside the Talos 2025 Year in Review: A discussion on what the data means for defenders
1 sources
Do not get high(jacked) off your own supply (chain)
1 sources
You Don’t Have a Security Problem, You Have a Visibility Problem
1 sources

Latest news

View all
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[D]fortinetCVE-2026-35616
Jetzt updaten! Kritische FortiClient-EMS-Lücke wird attackiert
4h ago
[A]sudoCVE-2026-35535
CVE-2026-35535
4h ago