Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1208 articles · 105311 vulns · 38/41 feeds (7d)
105311
New CVEs
201
Critical
16
Pre-CVE
1384
CISA KEV
1208
Articles
38/41
Feeds

Vulnerabilities

9.3
langflow · CVE-2026-33017 — Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prior to 1.9.0, the POST /api/v1/build_public_tmp/{flow_id}/flow endpoint allows building public flows withouKEVEXPLOITED
langflow· CVSS 9.3· CWE-94
120🔥
6 articles
0
Mar 20, 2026
8.8
aquasecurity · CVE-2026-33634 — Trivy ecosystem supply chain briefly compromisedKEVEXPLOITED
trivy· CVSS 8.8· CWE-506
108🔥
1 articles
0
Mar 23, 2026
9.8
gnu · CVE-2026-24061 — telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.KEVEXPLOITED
inetutils· CVSS 9.8· CWE-88
98
1 articles
0
Jan 21, 2026
8.8
microsoft · CVE-2026-21510 — Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.KEVEXPLOITED
windows_10_1607· CVSS 8.8· CWE-693
94
1 articles
0
Feb 10, 2026
5.5
microsoft · CVE-2026-20805 — Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.KEVEXPLOITED
windows_10_1607· CVSS 5.5· CWE-200
90
1 articles
0
Jan 13, 2026
10.0
oracle · CVE-2026-21962 — Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server ProxKEVEXPLOITED
http_server· CVSS 10.0· CWE-284
89
1 articles
0
Jan 20, 2026
10.0
cisco · CVE-2026-20131 — A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root&nKEVEXPLOITED
secure_firewall_management_center· CVSS 10.0· CWE-502
88
3 articles
0
Mar 4, 2026
7.8
apple · CVE-2026-20700 — A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An attacker with memoKEVEXPLOITED
ipados· CVSS 7.8· CWE-119
79
1 articles
0
Feb 11, 2026
10.0
cisco · CVE-2026-20127 — A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, rKEVEXPLOITED
catalyst_sd-wan_manager· CVSS 10.0· CWE-287
78
1 articles
0
Feb 25, 2026
9.8
Synology · CVE-2026-32746 — telnetd in GNU inetutils through 2.7 allows an out-of-bounds write in the LINEMODE SLC (Set Local Characters) suboption handler because add_slc does not check whether the buffer is full.EXPLOITED
DSM· CVSS 9.8· CWE-120
64
3 articles
0
Mar 13, 2026
→ View full list

Urgent

27.0
aquasecurity trivy
CVE-2026-33634
KEV3d ago
23.4
8theme xstore core
CVE-2026-25306
KEV1d ago
22.6
langflow langflow
CVE-2026-33017
KEV7d ago
21.2
vllm-project vllm
CVE-2026-27893
EXPtoday
21.0
ImageMagick ImageMagick
CVE-2026-33535
EXP
today
21.0
null grid::machine
CVE-2026-4851
EXPtoday
19.9
nec platforms aterm w1200ex(-ms)
CVE-2026-4621
EXPtoday
19.9
nec platforms aterm wx3600hp
CVE-2026-4619
EXPtoday
19.9
nec platforms aterm w1200ex(-ms)
CVE-2026-4309
EXPtoday
19.8
softing pngate
CVE-2023-7339
EXPtoday
View full list

Pre-CVE Events

View all
SmarterTools SmarterMail Multiple Vulnerabilities
smartertoolsMEDIUM1 sourcesreported
Hitachi Virtual Storage Platform Multiple Vulnerabilities
hitachiHIGH1 sourcesreported
IBM App Connect Enterprise Multiple Vulnerabilities
ibmHIGH1 sourcesreported
Dovecot Multiple Vulnerabilities
dovecotMEDIUM1 sourcesreported
Multiple vulnerabilities in Red Hat Enterprise Linux kea package
red hatMEDIUM1 sourcesreported

Latest news

[JPCERT/CC]Security Alert: Microsoft Releases March 2026 Security Updat...
[JPCERT/CC]Security Alert: Microsoft Releases February 2026 Security Up...
[JPCERT/CC]Security Alert: Alert Regarding Vulnerabilities in Adobe Acr...
[JPCERT/CC]Security Alert: Microsoft Releases January 2026 Security Upd...
[JPCERT/CC]Security Alert: Alert Regarding Vulnerabilities in Adobe Acr...
[JPCERT/CC]Security Alert: Microsoft Releases December 2025 Security Up...
[VulDB]CVE-2026-4622 | NEC Platforms Aterm WX3000HP2 os command inj...
1h ago
[VulDB]CVE-2026-4621 | NEC Platforms Aterm W1200EX backdoor
1h ago

Pipeline

0
Queued
0
Analyzing
1208
Today