Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2725 articles · 161628 vulns · 36/41 feeds (7d)
723
+247 today
Exploited (7d)
277
+68 today
Critical (7d)
1648
CISA KEV
197
Pre-CVE
2725
+819 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

10.0
cis · CVE-2026-20182 — Cisco Catalyst SD-WAN Controller Authentication Bypass VulnerabilityKEVEXPLOITEDPATCHED
catalyst_sd-wan_manager· CVSS 10.0· CWE-287
164🔥
24 art.
0
May 14, 2026
9.3
checkpoint · CVE-2026-50751 — User Authentication Bypass in VPN Remote Access and Mobile AccessKEVEXPLOITEDPATCHED
quantum security gateway· CVSS 9.3· CWE-287
162🔥
13 art.
0
Jun 8, 2026
7.2
ivanti · CVE-2026-6973 — CVE-2026-6973: A configuration control vulnerability in the Ivanti Endpoint Manager Mobile before 12.9.0.1, 12.8.0.3 and 12.7.0.2 versiKEVEXPLOITEDPATCHED
endpoint_manager_mobile· CVSS 7.2· CWE-15
154🔥
13 art.
0
May 7, 2026
7.8
linux · CVE-2026-31431 — crypto: algif_aead - Revert to operating out-of-placeKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.8
152🔥
83 art.
0
Apr 22, 2026
9.8
coreweave · CVE-2026-39987 — marimo Affected by Pre-Auth Remote Code Execution via Terminal WebSocket Authentication BypassKEVEXPLOITEDPATCHED
marimo· CVSS 9.8· CWE-306
151🔥
9 art.
0
Apr 8, 2026
7.9
linux · CVE-2026-43284 — xfrm: esp: avoid in-place decrypt on shared skb fragsKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.9· CWE-20
149🔥
38 art.
0
May 8, 2026
8.1
f5 · CVE-2026-42945 — NGINX ngx_http_rewrite_module vulnerabilityKEVEXPLOITEDPATCHED
nginx· CVSS 8.1· CWE-122
147🔥
23 art.
0
May 13, 2026
8.8
google · CVE-2026-5281 — CVE-2026-5281: Use after free in Dawn in Google Chrome prior to 146.0.7680.178 allowed a remote attacker who had compromised the renderKEVEXPLOITEDPATCHED
chrome· CVSS 8.8· CWE-416
145🔥
18 art.
0
Apr 1, 2026
7.9
linux · CVE-2026-43500 — rxrpc: Also unshare DATA/RESPONSE packets when paged frags are presentKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.9· CWE-20
138🔥
27 art.
0
May 11, 2026
8.8
litellm · CVE-2026-42271 — LiteLLM: Authenticated command execution via MCP stdio test endpointsKEVEXPLOITEDPATCHED
litellm· CVSS 8.8· CWE-77
130🔥
4 art.
0
Apr 25, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
Critical vulnerabilities in multiple Adobe products including Adobe Experience Manager and Adobe InDesign
adobeCRITICAL2 sources
Multiple vulnerabilities addressed in Microsoft June 2026 monthly rollup
microsoft1 sources
Multiple Vulnerabilities in Siemens Control Systems Products
siemens1 sources

Latest news

View all
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates
[B]trend microCVE-2026-34926
Security Alert: Alert Regarding Multiple Vulnerabilities in Trend Micro Products Including TrendAI Apex One
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-44)
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)
[B]microsoft
Security Alert: Microsoft Releases May 2026 Security Updates
[B]microsoftCVE-2026-20805
Security Alert: Microsoft Releases January 2026 Security Updates