Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2154 articles · 154714 vulns · 36/41 feeds (7d)
442
+60 today
Exploited (7d)
164
+18 today
Critical (7d)
1616
CISA KEV
92
Pre-CVE
2154
+408 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

7.8
linux · CVE-2026-31431 — crypto: algif_aead - Revert to operating out-of-placeKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.8
156🔥
79 art.
0
Apr 22, 2026
7.8
microsoft · CVE-2026-33825 — Microsoft Defender Elevation of Privilege VulnerabilityKEVEXPLOITEDPATCHED
defender_antimalware_platform· CVSS 7.8· CWE-1220
148🔥
19 art.
0
Apr 14, 2026
7.8
microsoft · CVE-2026-41091 — Microsoft Defender Elevation of Privilege VulnerabilityKEVEXPLOITEDPATCHED
microsoft malware protection engine· CVSS 7.8· CWE-59
128🔥
3 art.
0
May 20, 2026
8.1
microsoft · CVE-2026-42897 — Microsoft Exchange Server Spoofing VulnerabilityKEVEXPLOITEDPATCHED
exchange_server· CVSS 8.1· CWE-79
122🔥
17 art.
0
May 14, 2026
8.1
nginx · CVE-2026-42945 — NGINX ngx_http_rewrite_module vulnerabilityKEVEXPLOITEDPATCHED
nginx plus· CVSS 8.1· CWE-122
119🔥
20 art.
0
May 13, 2026
4.0
microsoft · CVE-2026-45498 — Microsoft Defender Denial of Service VulnerabilityKEVEXPLOITEDPATCHED
microsoft defender antimalware platform· CVSS 4.0
105🔥
1 art.
0
May 20, 2026
7.8
microsoft · CVE-2026-25187 — Winlogon Elevation of Privilege VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 7.8· CWE-59
96
1 art.
0
Mar 10, 2026
9.8
burst statistics · CVE-2026-8181 — Burst Statistics 3.4.0 - 3.4.1.1 - Authentication Bypass to Admin Account TakeoverKEVEXPLOITED
privacy-friendly wordpress analytics· CVSS 9.8· CWE-287
93
3 art.
0
May 14, 2026
7.5
funnel builder · CVE-2026-47100 — Funnel Builder for WooCommerce Checkout < 3.15.0.3 Missing Authorization via AJAXKEVEXPLOITEDPATCHED
funnel builder for woocommerce checkout· CVSS 7.5· CWE-862
92
1 art.
0
May 19, 2026
9.8
vm2_project · CVE-2026-26956 — vm2: WASM Sandbox Escape (Node 25 only)EXPLOITEDPATCHED
vm2· CVSS 9.8· CWE-94
88
5 art.
0
May 4, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
Multiple vulnerabilities in Splunk products requiring critical updates
splunkCRITICAL1 sources
Cisco Secure Workload Unauthorized API Access Vulnerability
ciscoCRITICAL1 sources
How to Protect Identities and Sessions from Infostealers
1 sources

Latest news

View all
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-44)
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases May 2026 Security Updates
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates