Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3185 articles · 183293 vulns · 37/41 feeds (7d)
17
+2 today
Exploited (7d)
225
+3 today
Critical (7d)
1718
CISA KEV
410
Pre-CVE
3185
+316 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

8.1
microsoft · CVE-2026-42897 — Microsoft Exchange Server Spoofing VulnerabilityKEVEXPLOITEDPATCHED
exchange_server· CVSS 8.1· CWE-79
134🔥
29 art.
0
May 14, 2026
8.8
linux · CVE-2026-43284 — xfrm: esp: avoid in-place decrypt on shared skb fragsKEVEXPLOITEDPATCHED
linux_kernel· CVSS 8.8
90
51 art.
0
May 8, 2026
7.8
linux · CVE-2026-43500 — rxrpc: Also unshare DATA/RESPONSE packets when paged frags are presentKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.8· CWE-416
86
37 art.
0
May 11, 2026
10.0
arista · CVE-2026-16812 — VeloCloud Orchestrator OS Command InjectionPATCHED
velocloud_orchestrator· CVSS 10.0· CWE-78
83
7 art.
0
Jul 27, 2026
5.3
cis · CVE-2026-20316 — Cisco Secure Firewall Management Center Software Static Credential Vulnerability
secure_firewall_management_center· CVSS 5.3· CWE-259
79
10 art.
0
Jul 29, 2026
—
rubygems · CVE-2026-66066 — Action Pack: Possible arbitrary file read and remote code execution in Active Storage variant processingPATCHED
activestorage· CWE-1188
74
10 art.
0
Jul 30, 2026
7.5
palo alto networks · CVE-2026-0300 — PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication PortalEXPLOITEDPATCHED
pan-os· CVSS 7.5· CWE-787
72
21 art.
0
May 6, 2026
5.8
netty · CVE-2026-42581 — Netty: HTTP/1.0 TE+CL Coexistence Bypasses Smuggling SanitizationEXPLOITEDPATCHED
netty· CVSS 5.8· CWE-444
72
5 art.
0
May 7, 2026
7.5
openjsf · CVE-2026-13676 — fast-uri vulnerable to host confusion via failed IDN canonicalizationEXPLOITEDPATCHED
fast-uri· CVSS 7.5· CWE-436
70
4 art.
0
Jun 29, 2026
7.5
diffusers · CVE-2026-45804 — Diffusers: TOCTOU Trust Remote Code BypassEXPLOITEDPATCHED
diffusers· CVSS 7.5· CWE-367
69
2 art.
0
May 20, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYCisco Advance Notification for Publication of July 1, 2026, Security Advisories
cisco1 sourcesverified
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
Serendipity 2.6.0 Multiple Security Vulnerabilities Including Username Takeover and XSS
serendipity projectCRITICAL1 sources
CrowdStrike Falcon Platform Helps Meet U.S. Government Mandates for CISA BOD-26-04
1 sources

Latest news

View all
[B]microsoftCVE-2026-42897
Security Alert: Microsoft Releases June 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-63)
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]trend microCVE-2026-34926
Security Alert: Alert Regarding Multiple Vulnerabilities in Trend Micro Products Including TrendAI Apex One
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases May 2026 Security Updates
[B]microsoftCVE-2026-56164
Security Alert: Microsoft Releases July 2026 Security Updates