Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2252 articles · 131457 vulns · 36/41 feeds (7d)
334
+46 today
Exploited (7d)
180
+67 today
Critical (7d)
1594
CISA KEV
50
Pre-CVE
2252
+312 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

7.8
linux · CVE-2026-31431 — crypto: algif_aead - Revert to operating out-of-placeKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.8
153🔥
49 art.
0
Apr 22, 2026
9.8
cpanel · CVE-2026-41940 — WebPros cPanel and WHM Authentication Bypass via Login FlowKEVEXPLOITEDPATCHED
cpanel· CVSS 9.8· CWE-306
144🔥
16 art.
0
Apr 29, 2026
9.8
weaver · CVE-2026-22679 — Weaver E-cology 10.0 Unauthenticated RCE via dubboApi Debug EndpointKEVEXPLOITEDPATCHED
e-cology· CVSS 9.8· CWE-306
127🔥
3 art.
0
Apr 7, 2026
4.3
microsoft · CVE-2026-32202 — Windows Shell Spoofing VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 4.3· CWE-693
103🔥
9 art.
0
Apr 14, 2026
4.3
microsoft · CVE-2026-21510 — Windows Shell Security Feature Bypass VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 4.3· CWE-693
99
5 art.
0
Feb 10, 2026
8.8
microsoft · CVE-2026-21513 — MSHTML Framework Security Feature Bypass VulnerabilityKEVEXPLOITEDPATCHED
windows_10_1607· CVSS 8.8· CWE-693
99
4 art.
0
Feb 10, 2026
9.8
progress · CVE-2026-4670 — Improper Authentication vulnerability in Progress MOVEit AutomationEXPLOITEDPATCHED
moveit_automation· CVSS 9.8· CWE-305
94
7 art.
0
Apr 30, 2026
8.6
adobe · CVE-2026-34621 — Acrobat Reader | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') (CWE-1321)KEVEXPLOITEDPATCHED
acrobat_dc· CVSS 8.6· CWE-1321
81
19 art.
0
Apr 11, 2026
7.5
ngtcp2 · CVE-2026-40170 — ngtcp2 has a qlog transport parameter serialization stack buffer overflowEXPLOITEDPATCHED
ngtcp2· CVSS 7.5· CWE-121
80
3 art.
0
Apr 16, 2026
7.7
progress · CVE-2026-5174 — Improper Access Control Vulnerability in Progress MOVEit AutomationEXPLOITEDPATCHED
moveit_automation· CVSS 7.7· CWE-20
78
6 art.
0
Apr 30, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
DarkSword iOS Exploit Chain
apple1 sources
CloudZ RAT abuses Microsoft Phone Link to intercept OTPs
1 sources
Local Privilege Escalation in Nix/Lix Daemon
nixHIGH1 sources

Latest news

View all
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]microsoftCVE-2026-21510
Security Alert: Microsoft Releases February 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-44)
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates