Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2789 articles · 110194 vulns · 38/41 feeds (7d)
668
+30 today
Exploited (7d)
308
+41 today
Critical (7d)
1538
CISA KEV
12
Pre-CVE
2789
+215 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

9.3
marimo · CVE-2026-39987 — marimo Affected by Pre-Auth Remote Code Execution via Terminal WebSocket Authentication BypassKEVEXPLOITEDPATCHED
marimo· CVSS 9.3· CWE-306
136🔥
5 art.
0
Apr 8, 2026
8.6
adobe · CVE-2026-34621 — Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') (CWE-1321)KEVEXPLOITED
PATCHED
acrobat reader· CVSS 8.6· CWE-1321
111🔥
4 art.
0
Apr 11, 2026
9.8
gnu · CVE-2026-24061 — telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.KEVEXPLOITEDPATCHED
inetutils· CVSS 9.8· CWE-88
100
1 art.
0
Jan 21, 2026
8.8
google · CVE-2026-5281 — CVE-2026-5281: Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderKEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-416
98
15 art.
0
Apr 1, 2026
9.8
ivanti · CVE-2026-1340 — CVE-2026-1340: A code injection in Ivanti Endpoint Manager Mobile allowing attackers to achieve unauthenticated remote code execution.KEVEXPLOITEDPATCHED
endpoint_manager_mobile· CVSS 9.8· CWE-94
82
3 art.
0
Jan 29, 2026
8.8
apache · CVE-2026-34197 — Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeansEXPLOITEDPATCHED
activemq· CVSS 8.8· CWE-20
76
10 art.
0
Apr 7, 2026
9.1
fortinet · CVE-2026-35616 — CVE-2026-35616: A improper access control vulnerability in Fortinet FortiClientEMS 7.4.5 through 7.4.6 may allow an unauthenticated attaKEVEXPLOITEDPATCHED
forticlientems· CVSS 9.1· CWE-284
76
17 art.
0
Apr 4, 2026
7.5
openssl · CVE-2026-31790 — Incorrect Failure Handling in RSA KEM RSASVE EncapsulationEXPLOITEDPATCHED
openssl· CVSS 7.5· CWE-754
74
9 art.
0
Apr 7, 2026
10.0
cis · CVE-2026-20127 — A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, rKEVEXPLOITEDPATCHED
catalyst_sd-wan_manager· CVSS 10.0· CWE-287
67
1 art.
0
Feb 25, 2026
9.8
beyondtrust · CVE-2026-1731 — BeyondTrust Remote Support (RS) and certain older versions of Privileged Remote Access (PRA) contain a critical pre-authentication remote code execution vulnerability. By sending specially crafted reqKEVEXPLOITEDPATCHED
privileged_remote_access· CVSS 9.8· CWE-78
65
2 art.
0
Feb 6, 2026
→ View full list

Pre-CVE Events

View all
Multiple Vulnerabilities in Asterisk Allow Local Privilege Escalation and Denial of Service
digiumHIGH1 sources
Multiple vulnerabilities in Red Hat Enterprise Linux affecting tar and Scrapy components
red hatHIGH1 sources
Denial of Service Vulnerability in libtasn1
MEDIUM1 sources
Multiple vulnerabilities in Red Hat Enterprise Linux fontforge allow arbitrary code execution
red hatHIGH1 sources
Multiple Vulnerabilities in IBM SPSS Allow Cross-Site Scripting, Denial of Service, and File Manipulation
ibmHIGH1 sources

Latest news

View all
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates
[B]libexifCVE-2026-40385
[NEU] [niedrig] libexif: Mehrere Schwachstellen ermöglichen Denial of Service und Offenlegung von Informationen
16m ago
[B]varnishCVE-2026-40396
[NEU] [niedrig] Varnish HTTP Cache: Mehrere Schwachstellen ermöglichen Denial of Service
16m ago