Zero Day Monitor
DashboardVulnerabilitiesTrendingZero-DaysNews
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1777 articles · 105733 vulns · 36/41 feeds (7d)
105733
New CVEs
253
Critical
0
Pre-CVE
1384
CISA KEV
1777
Articles
36/41
Feeds

Vulnerabilities

8.8
aquasec · CVE-2026-33634 — Trivy ecosystem supply chain briefly compromisedKEVEXPLOITED
setup-trivy· CVSS 8.8· CWE-506
124🔥
2 articles
0
Mar 23, 2026
9.3
langflow · CVE-2026-33017 — Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prior to 1.9.0, the POST /api/v1/build_public_tmp/{flow_id}/flow endpoint allows building public flows withouKEVEXPLOITED
langflow· CVSS 9.3· CWE-94
117🔥
7 articles
0
Mar 20, 2026
0.0
linux · CVE-2026-23400 — rust_binder: call set_notification_done() without proc lockEXPLOITED
linux kernel· CVSS 0.0
77
13 articles
0
Mar 29, 2026
9.8
gnu · CVE-2026-24061 — telnetd in GNU Inetutils through 2.7 allows remote authentication bypass via a "-f root" value for the USER environment variable.KEVEXPLOITED
inetutils· CVSS 9.8· CWE-88
69
1 articles
0
Jan 21, 2026
8.8
microsoft · CVE-2026-21510 — Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.KEVEXPLOITED
windows_10_1607· CVSS 8.8· CWE-693
66
1 articles
0
Feb 10, 2026
7.5
micromatch · CVE-2026-33671 — Picomatch has a ReDoS vulnerability via extglob quantifiersEXPLOITED
picomatch· CVSS 7.5· CWE-1333
65
2 articles
0
Mar 26, 2026
9.3
Cloud Software Group · CVE-2026-3055 — Insufficient input validation in NetScaler ADC and NetScaler Gateway when configured as a SAML IDP leading to memory overreadEXPLOITED
NetScaler ADC and NetScaler Gateway· CVSS 9.3· CWE-125
63
7 articles
0
Mar 23, 2026
10.0
oracle · CVE-2026-21962 — Vulnerability in the Oracle HTTP Server, Oracle Weblogic Server Proxy Plug-in product of Oracle Fusion Middleware (component: Weblogic Server Proxy Plug-in for Apache HTTP Server, Weblogic Server ProxKEVEXPLOITED
http_server· CVSS 10.0· CWE-284
63
1 articles
0
Jan 20, 2026
5.5
microsoft · CVE-2026-20805 — Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose information locally.KEVEXPLOITED
windows_10_1607· CVSS 5.5· CWE-200
63
1 articles
0
Jan 13, 2026
10.0
cisco · CVE-2026-20131 — A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary Java code as root&nKEVEXPLOITED
secure_firewall_management_center· CVSS 10.0· CWE-502
63
3 articles
0
Mar 4, 2026
→ View full list

Urgent

27.4
aquasec setup-trivy
CVE-2026-33634
KEV5d ago
25.6
linux linux kernel
CVE-2026-23400
EXPtoday
22.1
linux linux kernel
CVE-2026-23399
EXP1d ago
21.6
langflow langflow
CVE-2026-33017
KEV9d ago
21.5
wazuh wazuh-manager
CVE-2025-15615
EXP
2d ago
20.8
n/a n/a
CVE-2026-30532
EXP2d ago
20.8
n/a n/a
CVE-2026-30303
EXP2d ago
20.8
n/a n/a
CVE-2026-30302
EXP2d ago
20.8
n/a n/a
CVE-2026-30533
EXP2d ago
20.8
n/a n/a
CVE-2026-30530
EXP2d ago
View full list

Latest news

[JPCERT/CC]Security Alert: Microsoft Releases February 2026 Security Up...
[JPCERT/CC]Security Alert: Microsoft Releases March 2026 Security Updat...
[JPCERT/CC]Security Alert: Alert Regarding Vulnerabilities in Adobe Acr...
[JPCERT/CC]Security Alert: Microsoft Releases January 2026 Security Upd...
[JPCERT/CC]Security Alert: Alert Regarding Vulnerabilities in Adobe Acr...
[JPCERT/CC]Security Alert: Microsoft Releases December 2025 Security Up...
[VulDB]CVE-2026-34005 | Xiongmai AHB7008T-MH-V2 /NBD7024H-P 4.03.R1...
1h ago
[VulDB]CVE-2026-33574 | OpenClaw up to 2026.3.7 toctou (GHSA-vhwf-4...
3h ago

Pipeline

0
Queued
0
Analyzing
156
Today