Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1166 articles · 101911 vulns · 38/41 feeds (7d)
115
+75 today
Exploited (7d)
169
+56 today
Critical (7d)
1506
CISA KEV
7
Pre-CVE
1166
+1166 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

8.8
google · CVE-2026-5281 — CVE-2026-5281: Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderKEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-416
127🔥
7 art.
0
Apr 1, 2026
9.8
citrix · CVE-2026-3055 — Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overreadKEV
EXPLOITED
PATCHED
netscaler_application_delivery_controller· CVSS 9.8· CWE-125
122🔥
8 art.
0
Mar 23, 2026
7.8
trueconf · CVE-2026-3502 — TrueConf Client downloads application update code and applies it without performing verification. An attacker who is able to influence the update delivery path can substitute a tampered update payloadKEVEXPLOITED
trueconf· CVSS 7.8· CWE-494
109🔥
3 art.
0
Mar 30, 2026
8.8
google · CVE-2026-3909 — Out of bounds write in Skia in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)KEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-787
98
3 art.
0
Mar 13, 2026
10.0
cis · CVE-2026-20131 — A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root&nKEVEXPLOITED
secure_firewall_management_center· CVSS 10.0· CWE-502
98
1 art.
0
Mar 4, 2026
8.8
google · CVE-2026-3910 — Inappropriate implementation in V8 in Google Chrome prior to 146.0.7680.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: HiKEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-94
98
3 art.
0
Mar 13, 2026
7.8
apple · CVE-2026-20700 — A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memoKEVEXPLOITEDPATCHED
ipados· CVSS 7.8· CWE-119
98
2 art.
0
Feb 11, 2026
8.8
google · CVE-2026-2441 — Use after free in CSS in Google Chrome prior to 145.0.7632.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)KEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-416
94
2 art.
0
Feb 13, 2026
9.8
Progress · CVE-2026-2699 — EAR vulnerability in Progress ShareFile Storage Zones Controller (SZC)EXPLOITEDPATCHED
ShareFile Storage Zones Controller· CVSS 9.8· CWE-698
88
3 art.
0
Apr 2, 2026
9.8
fortinet · CVE-2026-21643 — An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an unauthenticated attacker to execute unauthorized codKEVEXPLOITEDPATCHED
forticlientems· CVSS 9.8· CWE-89
88
5 art.
0
Feb 6, 2026
→ View full list

Pre-CVE Events

View all
New BPFDoor Variants with Enhanced Stealth Techniques
1 sources
Multiple vulnerabilities in Netgate products
netgate1 sources
Multiple Vulnerabilities in Netgate pfSense Plus and CE Allow Remote Code Execution and Cross-Site Scripting
netgateHIGH1 sources
Increase in Qilin Ransomware Attacks in Japan (2025)
1 sources
Qilin EDR Killer Malware Infection Chain
1 sources

Latest news

View all
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[C]endianCVE-2026-34802
CVE-2026-34802 | Endian Firewall 3.3.25 Parameter /cgi-bin/salearn.cgi spam cross site scripting
42m ago
[C]endianCVE-2026-34801
CVE-2026-34801 | Endian Firewall 3.3.25 Parameter fixed_leases remark cross site scripting
42m ago